<?xml version='1.0' encoding='utf-8'?>
<oval_definitions xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:red-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:ind-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>AlmaLinux OS Errata System</oval:product_name>
    <oval:product_version>0.0.1</oval:product_version>
    <oval:schema_version>5.10</oval:schema_version>
    <oval:timestamp>2026-08-13T10:44:12</oval:timestamp>
  </generator>
  <definitions>
    <definition id="oval:org.almalinux.alsa:def:20257500" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7500: perl security update (Important)</title>
        <reference ref_id="CVE-2024-56406" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56406"/>
        <reference ref_id="RHSA-2025:7500" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7500"/>
        <reference ref_id="ALSA-2025:7500" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7500.html"/>
        <description>Perl is a high-level programming language that is commonly used for system administration utilities and web programming.  

Security Fix(es):  

  * perl: Perl 5.34, 5.36, 5.38 and 5.40 are vulnerable to a heap buffer overflow when transliterating non-ASCII bytes (CVE-2024-56406)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359290" id="2359290"></bugzilla>
          <cve public="20250413" href="https://access.redhat.com/security/cve/CVE-2024-56406" impact="Important" cwe="(CWE-122|CWE-787)" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2024-56406</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500201" comment="perl is earlier than 4:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500002" comment="perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500202" comment="perl-B is earlier than 0:1.89-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500004" comment="perl-B is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500203" comment="perl-Devel-Peek is earlier than 0:1.34-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500006" comment="perl-Devel-Peek is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500204" comment="perl-DynaLoader is earlier than 0:1.56-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500008" comment="perl-DynaLoader is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500205" comment="perl-Errno is earlier than 0:1.38-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500010" comment="perl-Errno is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500206" comment="perl-Fcntl is earlier than 0:1.18-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500012" comment="perl-Fcntl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500207" comment="perl-File-DosGlob is earlier than 0:1.12-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500014" comment="perl-File-DosGlob is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500208" comment="perl-GDBM_File is earlier than 1:1.24-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500016" comment="perl-GDBM_File is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500209" comment="perl-Hash-Util is earlier than 0:0.32-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500018" comment="perl-Hash-Util is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500210" comment="perl-Hash-Util-FieldHash is earlier than 0:1.27-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500020" comment="perl-Hash-Util-FieldHash is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500211" comment="perl-I18N-Langinfo is earlier than 0:0.24-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500022" comment="perl-I18N-Langinfo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500212" comment="perl-IO is earlier than 0:1.55-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500024" comment="perl-IO is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500213" comment="perl-NDBM_File is earlier than 0:1.17-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500026" comment="perl-NDBM_File is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500214" comment="perl-ODBM_File is earlier than 0:1.18-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500028" comment="perl-ODBM_File is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500215" comment="perl-Opcode is earlier than 0:1.65-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500030" comment="perl-Opcode is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500216" comment="perl-POSIX is earlier than 0:2.20-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500032" comment="perl-POSIX is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500217" comment="perl-Sys-Hostname is earlier than 0:1.25-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500034" comment="perl-Sys-Hostname is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500218" comment="perl-Time-Piece is earlier than 0:1.3401-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500036" comment="perl-Time-Piece is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500219" comment="perl-devel is earlier than 4:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500038" comment="perl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500220" comment="perl-interpreter is earlier than 4:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500040" comment="perl-interpreter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500221" comment="perl-lib is earlier than 0:0.65-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500042" comment="perl-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500222" comment="perl-libs is earlier than 4:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500044" comment="perl-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500223" comment="perl-mro is earlier than 0:1.29-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500046" comment="perl-mro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500224" comment="perl-ph is earlier than 0:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500048" comment="perl-ph is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500049" comment="perl-Attribute-Handlers is earlier than 0:1.03-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500050" comment="perl-Attribute-Handlers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500051" comment="perl-AutoLoader is earlier than 0:5.74-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500052" comment="perl-AutoLoader is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500053" comment="perl-AutoSplit is earlier than 0:5.74-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500054" comment="perl-AutoSplit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500055" comment="perl-Benchmark is earlier than 0:1.25-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500056" comment="perl-Benchmark is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500057" comment="perl-Class-Struct is earlier than 0:0.68-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500058" comment="perl-Class-Struct is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500059" comment="perl-Config-Extensions is earlier than 0:0.03-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500060" comment="perl-Config-Extensions is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500061" comment="perl-DBM_Filter is earlier than 0:0.06-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500062" comment="perl-DBM_Filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500063" comment="perl-Devel-SelfStubber is earlier than 0:1.06-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500064" comment="perl-Devel-SelfStubber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500065" comment="perl-DirHandle is earlier than 0:1.05-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500066" comment="perl-DirHandle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500067" comment="perl-Dumpvalue is earlier than 0:2.27-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500068" comment="perl-Dumpvalue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500069" comment="perl-English is earlier than 0:1.11-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500070" comment="perl-English is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500071" comment="perl-ExtUtils-Constant is earlier than 0:0.25-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500072" comment="perl-ExtUtils-Constant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500073" comment="perl-ExtUtils-Embed is earlier than 0:1.35-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500074" comment="perl-ExtUtils-Embed is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500075" comment="perl-ExtUtils-Miniperl is earlier than 0:1.14-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500076" comment="perl-ExtUtils-Miniperl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500077" comment="perl-File-Basename is earlier than 0:2.86-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500078" comment="perl-File-Basename is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500079" comment="perl-File-Compare is earlier than 0:1.100.800-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500080" comment="perl-File-Compare is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500081" comment="perl-File-Copy is earlier than 0:2.41-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500082" comment="perl-File-Copy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500083" comment="perl-File-Find is earlier than 0:1.44-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500084" comment="perl-File-Find is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500085" comment="perl-File-stat is earlier than 0:1.14-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500086" comment="perl-File-stat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500087" comment="perl-FileCache is earlier than 0:1.10-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500088" comment="perl-FileCache is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500089" comment="perl-FileHandle is earlier than 0:2.05-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500090" comment="perl-FileHandle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500091" comment="perl-FindBin is earlier than 0:1.54-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500092" comment="perl-FindBin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500093" comment="perl-Getopt-Std is earlier than 0:1.14-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500094" comment="perl-Getopt-Std is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500095" comment="perl-I18N-Collate is earlier than 0:1.02-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500096" comment="perl-I18N-Collate is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500097" comment="perl-I18N-LangTags is earlier than 0:0.45-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500098" comment="perl-I18N-LangTags is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500099" comment="perl-IPC-Open3 is earlier than 0:1.22-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500100" comment="perl-IPC-Open3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500101" comment="perl-Locale-Maketext-Simple is earlier than 1:0.21-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500102" comment="perl-Locale-Maketext-Simple is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500103" comment="perl-Math-Complex is earlier than 0:1.62-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500104" comment="perl-Math-Complex is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500105" comment="perl-Memoize is earlier than 0:1.16-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500106" comment="perl-Memoize is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500107" comment="perl-Module-Loaded is earlier than 1:0.08-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500108" comment="perl-Module-Loaded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500109" comment="perl-NEXT is earlier than 0:0.69-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500110" comment="perl-NEXT is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500111" comment="perl-Net is earlier than 0:1.04-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500112" comment="perl-Net is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500113" comment="perl-Pod-Functions is earlier than 0:1.14-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500114" comment="perl-Pod-Functions is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500115" comment="perl-Pod-Html is earlier than 0:1.35-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500116" comment="perl-Pod-Html is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500117" comment="perl-Safe is earlier than 0:2.46-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500118" comment="perl-Safe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500119" comment="perl-Search-Dict is earlier than 0:1.07-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500120" comment="perl-Search-Dict is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500121" comment="perl-SelectSaver is earlier than 0:1.02-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500122" comment="perl-SelectSaver is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500123" comment="perl-SelfLoader is earlier than 0:1.27-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500124" comment="perl-SelfLoader is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500125" comment="perl-Symbol is earlier than 0:1.09-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500126" comment="perl-Symbol is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500127" comment="perl-Term-Complete is earlier than 0:1.403-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500128" comment="perl-Term-Complete is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500129" comment="perl-Term-ReadLine is earlier than 0:1.17-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500130" comment="perl-Term-ReadLine is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500131" comment="perl-Test is earlier than 0:1.31-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500132" comment="perl-Test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500133" comment="perl-Text-Abbrev is earlier than 0:1.02-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500134" comment="perl-Text-Abbrev is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500135" comment="perl-Thread is earlier than 0:3.05-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500136" comment="perl-Thread is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500137" comment="perl-Thread-Semaphore is earlier than 0:2.13-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500138" comment="perl-Thread-Semaphore is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500139" comment="perl-Tie is earlier than 0:4.6-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500140" comment="perl-Tie is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500141" comment="perl-Tie-File is earlier than 0:1.09-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500142" comment="perl-Tie-File is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500143" comment="perl-Tie-Memoize is earlier than 0:1.1-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500144" comment="perl-Tie-Memoize is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500145" comment="perl-Time is earlier than 0:1.04-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500146" comment="perl-Time is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500147" comment="perl-Unicode-UCD is earlier than 0:0.78-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500148" comment="perl-Unicode-UCD is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500149" comment="perl-User-pwent is earlier than 0:1.05-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500150" comment="perl-User-pwent is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500151" comment="perl-autouse is earlier than 0:1.11-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500152" comment="perl-autouse is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500153" comment="perl-base is earlier than 0:2.27-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500154" comment="perl-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500155" comment="perl-blib is earlier than 0:1.07-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500156" comment="perl-blib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500157" comment="perl-debugger is earlier than 0:1.60-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500158" comment="perl-debugger is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500159" comment="perl-deprecate is earlier than 0:0.04-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500160" comment="perl-deprecate is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500161" comment="perl-diagnostics is earlier than 0:1.40-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500162" comment="perl-diagnostics is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500163" comment="perl-doc is earlier than 0:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500164" comment="perl-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500165" comment="perl-encoding-warnings is earlier than 0:0.14-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500166" comment="perl-encoding-warnings is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500167" comment="perl-fields is earlier than 0:2.27-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500168" comment="perl-fields is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500169" comment="perl-filetest is earlier than 0:1.03-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500170" comment="perl-filetest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500171" comment="perl-if is earlier than 0:0.61.000-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500172" comment="perl-if is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500173" comment="perl-less is earlier than 0:0.03-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500174" comment="perl-less is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500175" comment="perl-libnetcfg is earlier than 4:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500176" comment="perl-libnetcfg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500177" comment="perl-locale is earlier than 0:1.12-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500178" comment="perl-locale is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500179" comment="perl-macros is earlier than 4:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500180" comment="perl-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500181" comment="perl-meta-notation is earlier than 0:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500182" comment="perl-meta-notation is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500183" comment="perl-open is earlier than 0:1.13-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500184" comment="perl-open is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500185" comment="perl-overload is earlier than 0:1.37-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500186" comment="perl-overload is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500187" comment="perl-overloading is earlier than 0:0.02-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500188" comment="perl-overloading is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500189" comment="perl-sigtrap is earlier than 0:1.10-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500190" comment="perl-sigtrap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500191" comment="perl-sort is earlier than 0:2.05-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500192" comment="perl-sort is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500193" comment="perl-subs is earlier than 0:1.04-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500194" comment="perl-subs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500195" comment="perl-utils is earlier than 0:5.40.2-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500196" comment="perl-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500197" comment="perl-vars is earlier than 0:1.05-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500198" comment="perl-vars is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500199" comment="perl-vmsish is earlier than 0:1.04-512.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257500200" comment="perl-vmsish is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515662" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15662: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-38352" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38352"/>
        <reference ref_id="RHSA-2025:15662" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15662"/>
        <reference ref_id="ALSA-2025:15662" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15662.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() (CVE-2025-38352)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-11"/>
          <updated date="2025-09-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2382581" id="2382581"></bugzilla>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-38352" impact="Important" cwe="CWE-362" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38352</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662001" comment="kernel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662002" comment="kernel-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662003" comment="kernel-debug is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662004" comment="kernel-debug-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662011" comment="kernel-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662013" comment="kernel-headers is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662014" comment="kernel-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662015" comment="kernel-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662017" comment="kernel-rt is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662018" comment="kernel-rt-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662031" comment="kernel-tools is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662035" comment="perf is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662036" comment="python3-perf is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662037" comment="rtla is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662038" comment="rv is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662046" comment="kernel-64k is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662047" comment="kernel-64k-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662074" comment="libperf is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515662076" comment="kernel-doc is earlier than 0:6.12.0-55.32.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264715" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4715: vim security update (Moderate)</title>
        <reference ref_id="CVE-2026-25749" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25749"/>
        <reference ref_id="RHSA-2026:4715" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4715"/>
        <reference ref_id="ALSA-2026:4715" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4715.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: Vim: Arbitrary code execution via 'helpfile' option processing (CVE-2026-25749)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-17"/>
          <updated date="2026-03-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2437843" id="2437843"></bugzilla>
          <cve public="20260206" href="https://access.redhat.com/security/cve/CVE-2026-25749" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-25749</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715001" comment="vim-X11 is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715002" comment="vim-common is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715003" comment="vim-enhanced is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715004" comment="vim-minimal is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715005" comment="xxd is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715006" comment="vim-data is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264715007" comment="vim-filesystem is earlier than 2:9.1.083-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202517913" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:17913: vim security update (Moderate)</title>
        <reference ref_id="CVE-2025-53905" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53905"/>
        <reference ref_id="CVE-2025-53906" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53906"/>
        <reference ref_id="RHSA-2025:17913" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:17913"/>
        <reference ref_id="ALSA-2025:17913" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-17913.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: Vim path traversal (CVE-2025-53906)
  * vim: Vim path traversial (CVE-2025-53905)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-14"/>
          <updated date="2025-10-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2380360" id="2380360"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380362" id="2380362"></bugzilla>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-53905" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:L">CVE-2025-53905</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-53906" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:L">CVE-2025-53906</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913001" comment="vim-X11 is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015001" comment="vim-X11 is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913003" comment="vim-common is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015002" comment="vim-common is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913005" comment="vim-enhanced is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015003" comment="vim-enhanced is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913007" comment="vim-minimal is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015004" comment="vim-minimal is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913009" comment="xxd is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015005" comment="xxd is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913011" comment="vim-data is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015006" comment="vim-data is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913013" comment="vim-filesystem is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015007" comment="vim-filesystem is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202634911" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:34911: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2025-10263" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10263"/>
        <reference ref_id="CVE-2026-43112" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43112"/>
        <reference ref_id="CVE-2026-45998" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45998"/>
        <reference ref_id="CVE-2026-46209" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46209"/>
        <reference ref_id="CVE-2026-46244" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46244"/>
        <reference ref_id="CVE-2026-46316" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46316"/>
        <reference ref_id="RHSA-2026:34911" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:34911"/>
        <reference ref_id="ALSA-2026:34911" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-34911.html"/>
        <reference ref_id="CVE-2026-53362" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53362"/>
        <reference ref_id="CVE-2026-53366" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53366"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)
  * kernel: rxrpc: Fix potential UAF after skb_unshare() failure (CVE-2026-45998)
  * kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CVE-2026-46209)
  * kernel: netfilter: nft_inner: Fix IPv6 inner_thoff desync (CVE-2026-46244)
  * kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources (CVE-2025-10263)
  * kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CVE-2026-46316)
  * kernel: kernel: ipv6 frag escape ()


Bug Fix(es) and Enhancement(s):  

  * crypto: testmgr - allow authenc(hmac(sha{256,384}),cts(cbc(aes))) in FIPS mode [almalinux-10.2.z] (JIRA:AlmaLinux-182537)
  * [ThinkPad Avon/Mario +AlmaLinux 10.2]The OS hang up with CapsLock fliker (JIRA:AlmaLinux-185110)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-02"/>
          <updated date="2026-07-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467015" id="2467015"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482024" id="2482024"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482636" id="2482636"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2484451" id="2484451"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486958" id="2486958"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486982" id="2486982"></bugzilla>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2025-10263" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2025-10263</cve>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43112" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-43112</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-45998" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-45998</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46209" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-46209</cve>
          <cve public="20260603" href="https://access.redhat.com/security/cve/CVE-2026-46244" impact="Important" cwe="CWE-823" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-46244</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-46316" impact="Important" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46316</cve>
          <cve public="20260621" href="https://access.redhat.com/security/cve/CVE-2026-53362" impact="Important" cwe="CWE-130" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-53362</cve>
          <cve public="20260716" href="https://access.redhat.com/security/cve/CVE-2026-53366" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-53366</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911001" comment="kernel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911002" comment="kernel-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911003" comment="kernel-debug is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911004" comment="kernel-debug-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911005" comment="kernel-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911006" comment="kernel-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911007" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911008" comment="kernel-rt is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911009" comment="kernel-rt-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911010" comment="kernel-rt-debug is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911011" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911012" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911013" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911014" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911015" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911016" comment="kernel-rt-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911017" comment="kernel-rt-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911018" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911019" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911020" comment="kernel-debug-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911021" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911022" comment="kernel-debug-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911023" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911024" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911025" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911026" comment="kernel-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911027" comment="kernel-devel-matched is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911028" comment="kernel-headers is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911029" comment="kernel-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911030" comment="kernel-tools is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911034" comment="perf is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911035" comment="python3-perf is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911036" comment="rtla is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911037" comment="rv is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911045" comment="kernel-64k is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911046" comment="kernel-64k-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911073" comment="libperf is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634911075" comment="kernel-doc is earlier than 0:6.12.0-211.30.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202619569" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:19569: kernel security update (Important)</title>
        <reference ref_id="CVE-2024-56603" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56603"/>
        <reference ref_id="CVE-2025-39766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39766"/>
        <reference ref_id="CVE-2025-68724" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68724"/>
        <reference ref_id="CVE-2025-68741" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68741"/>
        <reference ref_id="CVE-2026-23270" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23270"/>
        <reference ref_id="CVE-2026-23401" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23401"/>
        <reference ref_id="CVE-2026-31402" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31402"/>
        <reference ref_id="CVE-2026-31408" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31408"/>
        <reference ref_id="CVE-2026-31607" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31607"/>
        <reference ref_id="CVE-2026-43128" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43128"/>
        <reference ref_id="CVE-2026-43284" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43284"/>
        <reference ref_id="CVE-2026-46300" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46300"/>
        <reference ref_id="CVE-2026-46333" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46333"/>
        <reference ref_id="RHSA-2026:19569" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:19569"/>
        <reference ref_id="ALSA-2026:19569" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-19569.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: net: af_can: do not leave a dangling sk pointer in can_create() (CVE-2024-56603)
  * kernel: net/sched: Make cake_enqueue return NET_XMIT_CN when past buffer_limit (CVE-2025-39766)
  * kernel: crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id (CVE-2025-68724)
  * kernel: scsi: qla2xxx: Fix improper freeing of purex item (CVE-2025-68741)
  * kernel: Linux kernel: Use-after-free in traffic control (act_ct) may lead to denial of service or privilege escalation (CVE-2026-23270)
  * kernel: Linux kernel KVM: Privilege escalation or denial of service due to improper shadow page table entry handling (CVE-2026-23401)
  * kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (CVE-2026-31402)
  * kernel: Bluetooth: SCO: Fix use-after-free in sco_recv_frame() due to missing sock_hold (CVE-2026-31408)
  * kernel: usbip: validate number_of_packets in usbip_pack_ret_submit() (CVE-2026-31607)
  * kernel: RDMA/umem: Fix double dma_buf_unpin in failure path (CVE-2026-43128)
  * kernel: "Dirty Frag" is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-43284)
  * kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-46300)
  * kernel: Read root-owned files as an unprivileged user (CVE-2026-46333)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-20"/>
          <updated date="2026-05-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2334439" id="2334439"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2394648" id="2394648"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2424886" id="2424886"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2425046" id="2425046"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2448745" id="2448745"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453803" id="2453803"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454844" id="2454844"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455334" id="2455334"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2461521" id="2461521"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467144" id="2467144"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467771" id="2467771"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477015" id="2477015"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477802" id="2477802"></bugzilla>
          <cve public="20241227" href="https://access.redhat.com/security/cve/CVE-2024-56603" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2024-56603</cve>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-39766" impact="Moderate" cwe="CWE-399" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-39766</cve>
          <cve public="20251224" href="https://access.redhat.com/security/cve/CVE-2025-68724" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-68724</cve>
          <cve public="20251224" href="https://access.redhat.com/security/cve/CVE-2025-68741" impact="Important" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68741</cve>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-23270" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23270</cve>
          <cve public="20260401" href="https://access.redhat.com/security/cve/CVE-2026-23401" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H">CVE-2026-23401</cve>
          <cve public="20260403" href="https://access.redhat.com/security/cve/CVE-2026-31402" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31402</cve>
          <cve public="20260406" href="https://access.redhat.com/security/cve/CVE-2026-31408" impact="Moderate" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31408</cve>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-31607" impact="Important" cwe="CWE-805" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-31607</cve>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43128" impact="Important" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43128</cve>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-43284" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-43284</cve>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-46300" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46300</cve>
          <cve public="20260515" href="https://access.redhat.com/security/cve/CVE-2026-46333" impact="Important" cwe="CWE-269" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46333</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569001" comment="kernel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569002" comment="kernel-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569003" comment="kernel-debug is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569004" comment="kernel-debug-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569011" comment="kernel-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569013" comment="kernel-headers is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569014" comment="kernel-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569015" comment="kernel-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569016" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569017" comment="kernel-tools is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569018" comment="kernel-tools-libs is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569019" comment="kernel-uki-virt is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569020" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569021" comment="perf is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569022" comment="python3-perf is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569023" comment="rtla is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569024" comment="rv is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569025" comment="kernel-cross-headers is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569026" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569027" comment="libperf is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569028" comment="kernel-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569029" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569030" comment="kernel-rt is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569031" comment="kernel-rt-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569032" comment="kernel-rt-debug is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569033" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569034" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569035" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569036" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569037" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569038" comment="kernel-rt-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569039" comment="kernel-rt-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569040" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569041" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569042" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569043" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569044" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569045" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569046" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569047" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569048" comment="kernel-64k is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569049" comment="kernel-64k-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569050" comment="kernel-64k-debug is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569051" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569052" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569053" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569054" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569055" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569056" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569057" comment="kernel-64k-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569058" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569059" comment="kernel-64k-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569060" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569061" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569062" comment="kernel-rt-64k is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569063" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569064" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569065" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569066" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569067" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569068" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569069" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569070" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569071" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569072" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569073" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619569075" comment="kernel-doc is earlier than 0:6.12.0-211.16.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510549" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10549: podman security update (Important)</title>
        <reference ref_id="CVE-2025-6032" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6032"/>
        <reference ref_id="RHSA-2025:10549" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10549"/>
        <reference ref_id="ALSA-2025:10549" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10549.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * podman: podman missing TLS verification (CVE-2025-6032)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-08"/>
          <updated date="2025-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2372501" id="2372501"></bugzilla>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-6032" impact="Important" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H">CVE-2025-6032</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510549001" comment="podman is earlier than 6:5.4.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510549002" comment="podman-remote is earlier than 6:5.4.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510549003" comment="podman-tests is earlier than 6:5.4.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510549004" comment="podman-docker is earlier than 6:5.4.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202522394" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:22394: qt6-qtsvg security update (Moderate)</title>
        <reference ref_id="CVE-2025-10728" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10728"/>
        <reference ref_id="RHSA-2025:22394" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:22394"/>
        <reference ref_id="ALSA-2025:22394" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-22394.html"/>
        <description>Scalable Vector Graphics (SVG) is an XML-based language for describing two-dimensional vector graphics. Qt provides classes for rendering and displaying SVG drawings in widgets and on other paint devices.  

Security Fix(es):  

  * qtsvg: Uncontrolled recursion in Qt SVG module (CVE-2025-10728)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-01"/>
          <updated date="2025-12-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401244" id="2401244"></bugzilla>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-10728" impact="Moderate" cwe="CWE-674" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-10728</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522394001" comment="qt6-qtsvg is earlier than 0:6.9.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772002" comment="qt6-qtsvg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522394002" comment="qt6-qtsvg-devel is earlier than 0:6.9.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772004" comment="qt6-qtsvg-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522394003" comment="qt6-qtsvg-examples is earlier than 0:6.9.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772006" comment="qt6-qtsvg-examples is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259466" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9466: mod_proxy_cluster security update (Moderate)</title>
        <reference ref_id="CVE-2024-10306" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-10306"/>
        <reference ref_id="RHSA-2025:9466" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9466"/>
        <reference ref_id="ALSA-2025:9466" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9466.html"/>
        <description>The mod_proxy_cluster module is a plugin for the Apache HTTP Server that provides load-balancer functionality.  

Security Fix(es):  

  * mod_proxy_cluster: mod_proxy_cluster unauthorized MCMP requests (CVE-2024-10306)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-24"/>
          <updated date="2025-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2321302" id="2321302"></bugzilla>
          <cve public="20250228" href="https://access.redhat.com/security/cve/CVE-2024-10306" impact="Moderate" cwe="CWE-863" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2024-10306</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259466001" comment="mod_proxy_cluster is earlier than 0:1.3.22-1.el10_0.2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259466002" comment="mod_proxy_cluster is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516115" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16115: gnutls security, bug fix, and enhancement update (Moderate)</title>
        <reference ref_id="CVE-2025-6395" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6395"/>
        <reference ref_id="CVE-2025-32988" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32988"/>
        <reference ref_id="CVE-2025-32989" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32989"/>
        <reference ref_id="CVE-2025-32990" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32990"/>
        <reference ref_id="RHSA-2025:16115" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16115"/>
        <reference ref_id="ALSA-2025:16115" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16115.html"/>
        <description>The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.  

Security Fix(es):  

  * gnutls: Vulnerability in GnuTLS certtool template parsing (CVE-2025-32990)
  * gnutls: Vulnerability in GnuTLS SCT extension parsing (CVE-2025-32989)
  * gnutls: Vulnerability in GnuTLS otherName SAN export (CVE-2025-32988)
  * gnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite() (CVE-2025-6395)


Bug Fix(es) and Enhancement(s):  

  * gnutls: Vulnerability in GnuTLS certtool template parsing (BZ#2359620)
  * gnutls: Vulnerability in GnuTLS SCT extension parsing (BZ#2359621)
  * gnutls: Vulnerability in GnuTLS otherName SAN export (BZ#2359622)
  * gnutls: NULL pointer dereference in _gnutls_figure_common_ciphersuite() (BZ#2376755)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-17"/>
          <updated date="2025-09-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359620" id="2359620"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359621" id="2359621"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359622" id="2359622"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376755" id="2376755"></bugzilla>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-6395" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2025-6395</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-32988" impact="Moderate" cwe="CWE-415" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2025-32988</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-32989" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-32989</cve>
          <cve public="20250709" href="https://access.redhat.com/security/cve/CVE-2025-32990" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L">CVE-2025-32990</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115001" comment="gnutls is earlier than 0:3.8.9-9.el10_0.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115002" comment="gnutls is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115003" comment="gnutls-c++ is earlier than 0:3.8.9-9.el10_0.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115004" comment="gnutls-c++ is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115005" comment="gnutls-dane is earlier than 0:3.8.9-9.el10_0.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115006" comment="gnutls-dane is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115007" comment="gnutls-devel is earlier than 0:3.8.9-9.el10_0.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115008" comment="gnutls-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115009" comment="gnutls-fips is earlier than 0:3.8.9-9.el10_0.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115010" comment="gnutls-fips is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115011" comment="gnutls-utils is earlier than 0:3.8.9-9.el10_0.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115012" comment="gnutls-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511797" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11797: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-8027" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8027"/>
        <reference ref_id="CVE-2025-8028" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8028"/>
        <reference ref_id="CVE-2025-8029" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8029"/>
        <reference ref_id="CVE-2025-8030" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8030"/>
        <reference ref_id="CVE-2025-8031" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8031"/>
        <reference ref_id="CVE-2025-8032" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8032"/>
        <reference ref_id="CVE-2025-8033" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8033"/>
        <reference ref_id="CVE-2025-8034" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8034"/>
        <reference ref_id="CVE-2025-8035" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8035"/>
        <reference ref_id="RHSA-2025:11797" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11797"/>
        <reference ref_id="ALSA-2025:11797" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11797.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Large branch table could lead to truncated instruction (CVE-2025-8028)
  * firefox: thunderbird: Memory safety bugs (CVE-2025-8035)
  * firefox: thunderbird: Incorrect URL stripping in CSP reports (CVE-2025-8031)
  * firefox: thunderbird: JavaScript engine only wrote partial return value to stack (CVE-2025-8027)
  * firefox: thunderbird: Potential user-assisted code execution in ?Copy as cURL? command (CVE-2025-8030)
  * firefox: Memory safety bugs (CVE-2025-8034)
  * firefox: thunderbird: Incorrect JavaScript state machine for generators (CVE-2025-8033)
  * firefox: thunderbird: XSLT documents could bypass CSP (CVE-2025-8032)
  * firefox: thunderbird: javascript: URLs executed on object and embed tags (CVE-2025-8029)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-28"/>
          <updated date="2025-07-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2382701" id="2382701"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382703" id="2382703"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382704" id="2382704"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382707" id="2382707"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382710" id="2382710"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382711" id="2382711"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382717" id="2382717"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382718" id="2382718"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382720" id="2382720"></bugzilla>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8027" impact="Important" cwe="CWE-457" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8027</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8028" impact="Important" cwe="CWE-1332" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8028</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8029" impact="Moderate" cwe="CWE-80" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8029</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8030" impact="Moderate" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8030</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8031" impact="Moderate" cwe="CWE-276" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8031</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8032" impact="Moderate" cwe="CWE-693" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8032</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8033" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-8033</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8034" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8034</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8035" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8035</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202511797001" comment="firefox is earlier than 0:128.13.0-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258816" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8816: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2025-30399" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30399"/>
        <reference ref_id="RHSA-2025:8816" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8816"/>
        <reference ref_id="ALSA-2025:8816" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8816.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.107 and .NET Runtime 9.0.6.Security Fix(es):  

  * dotnet: .NET Remote Code Vulnerability (CVE-2025-30399)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-11"/>
          <updated date="2025-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369701" id="2369701"></bugzilla>
          <cve public="20250610" href="https://access.redhat.com/security/cve/CVE-2025-30399" impact="Important" cwe="CWE-427" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-30399</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816005" comment="dotnet-host is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601010" comment="dotnet-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816006" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816007" comment="dotnet-runtime-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816008" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816009" comment="dotnet-sdk-9.0 is earlier than 0:9.0.107-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816010" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.107-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816011" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.107-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816012" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816013" comment="dotnet-templates-9.0 is earlier than 0:9.0.107-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816014" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.107-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258816015" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.107-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257509" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7509: valkey security update (Important)</title>
        <reference ref_id="CVE-2025-21605" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21605"/>
        <reference ref_id="RHSA-2025:7509" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7509"/>
        <reference ref_id="ALSA-2025:7509" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7509.html"/>
        <description>Valkey is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Valkey works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Valkey also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Valkey behave like a cache. You can use Valkey from most programming languages also.  

Security Fix(es):  

  * redis: Redis DoS Vulnerability due to unlimited growth of output buffers abused by unauthenticated client (CVE-2025-21605)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2361883" id="2361883"></bugzilla>
          <cve public="20250423" href="https://access.redhat.com/security/cve/CVE-2025-21605" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21605</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509005" comment="valkey is earlier than 0:8.0.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509002" comment="valkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509006" comment="valkey-devel is earlier than 0:8.0.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509004" comment="valkey-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257524" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7524: xz security update (Important)</title>
        <reference ref_id="CVE-2025-31115" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-31115"/>
        <reference ref_id="RHSA-2025:7524" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7524"/>
        <reference ref_id="ALSA-2025:7524" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7524.html"/>
        <description>XZ Utils is an integrated collection of user-space file compression utilities based on the Lempel-Ziv-Markov chain algorithm (LZMA), which performs lossless data compression. The algorithm provides a high compression ratio while keeping the decompression time short.  

Security Fix(es):  

  * xz: XZ has a heap-use-after-free bug in threaded .xz decoder (CVE-2025-31115)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2357249" id="2357249"></bugzilla>
          <cve public="20250403" href="https://access.redhat.com/security/cve/CVE-2025-31115" impact="Important" cwe="(CWE-366|CWE-416|CWE-476|CWE-826)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-31115</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524009" comment="xz is earlier than 1:5.6.2-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524002" comment="xz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524010" comment="xz-devel is earlier than 1:5.6.2-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524004" comment="xz-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524011" comment="xz-libs is earlier than 1:5.6.2-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524006" comment="xz-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524012" comment="xz-lzma-compat is earlier than 1:5.6.2-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257524008" comment="xz-lzma-compat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257593" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7593: ghostscript security update (Moderate)</title>
        <reference ref_id="CVE-2025-27832" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27832"/>
        <reference ref_id="RHSA-2025:7593" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7593"/>
        <reference ref_id="ALSA-2025:7593" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7593.html"/>
        <description>The Ghostscript suite contains utilities for rendering PostScript and PDF documents. Ghostscript translates PostScript code to common bitmap formats so that the code can be displayed or printed.  

Security Fix(es):  

  * Ghostscript: NPDL device: Compression buffer overflow (CVE-2025-27832)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-14"/>
          <updated date="2025-05-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2354949" id="2354949"></bugzilla>
          <cve public="20250325" href="https://access.redhat.com/security/cve/CVE-2025-27832" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-27832</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593015" comment="ghostscript is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593002" comment="ghostscript is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593016" comment="libgs is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593004" comment="libgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593017" comment="libgs-devel is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593006" comment="libgs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593007" comment="ghostscript-doc is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593008" comment="ghostscript-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593009" comment="ghostscript-tools-fonts is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593010" comment="ghostscript-tools-fonts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593011" comment="ghostscript-tools-printing is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593012" comment="ghostscript-tools-printing is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593013" comment="ghostscript-tools-dvipdf is earlier than 0:10.02.1-16.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257593014" comment="ghostscript-tools-dvipdf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257601" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7601: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2025-26646" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-26646"/>
        <reference ref_id="RHSA-2025:7601" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7601"/>
        <reference ref_id="ALSA-2025:7601" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7601.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.106 and .NET Runtime 9.0.5.Security Fix(es):  

  * dotnet: .NET and Visual Studio Spoofing Vulnerability (CVE-2025-26646)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-14"/>
          <updated date="2025-05-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2365317" id="2365317"></bugzilla>
          <cve public="20250514" href="https://access.redhat.com/security/cve/CVE-2025-26646" impact="Important" cwe="CWE-290" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-26646</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601031" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601032" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601033" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601034" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601035" comment="dotnet-host is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601010" comment="dotnet-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601036" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601037" comment="dotnet-runtime-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601038" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601039" comment="dotnet-sdk-9.0 is earlier than 0:9.0.106-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601040" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.106-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601041" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.106-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601042" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601043" comment="dotnet-templates-9.0 is earlier than 0:9.0.106-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601044" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.106-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601045" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.106-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257599" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7599: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2025-26646" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-26646"/>
        <reference ref_id="RHSA-2025:7599" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7599"/>
        <reference ref_id="ALSA-2025:7599" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7599.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.116 and .NET Runtime 8.0.16.Security Fix(es):  

  * dotnet: .NET and Visual Studio Spoofing Vulnerability (CVE-2025-26646)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-14"/>
          <updated date="2025-05-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2365317" id="2365317"></bugzilla>
          <cve public="20250514" href="https://access.redhat.com/security/cve/CVE-2025-26646" impact="Important" cwe="CWE-290" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-26646</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599025" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599026" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599027" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599028" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599029" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599030" comment="dotnet-runtime-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599031" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599032" comment="dotnet-sdk-8.0 is earlier than 0:8.0.116-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599033" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.116-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599034" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.16-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599035" comment="dotnet-templates-8.0 is earlier than 0:8.0.116-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599036" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.116-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258047" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8047: unbound security update (Moderate)</title>
        <reference ref_id="CVE-2024-8508" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-8508"/>
        <reference ref_id="RHSA-2025:8047" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8047"/>
        <reference ref_id="ALSA-2025:8047" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8047.html"/>
        <description>The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver.   

Security Fix(es):  

  * unbound: Unbounded name compression could lead to Denial of Service (CVE-2024-8508)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-20"/>
          <updated date="2025-05-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2316321" id="2316321"></bugzilla>
          <cve public="20241003" href="https://access.redhat.com/security/cve/CVE-2024-8508" impact="Moderate" cwe="CWE-606" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2024-8508</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047013" comment="python3-unbound is earlier than 0:1.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047002" comment="python3-unbound is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047014" comment="unbound is earlier than 0:1.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047004" comment="unbound is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047015" comment="unbound-anchor is earlier than 0:1.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047006" comment="unbound-anchor is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047016" comment="unbound-dracut is earlier than 0:1.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047008" comment="unbound-dracut is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047017" comment="unbound-libs is earlier than 0:1.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047010" comment="unbound-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047018" comment="unbound-devel is earlier than 0:1.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047012" comment="unbound-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258125" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8125: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-4918" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4918"/>
        <reference ref_id="CVE-2025-4919" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4919"/>
        <reference ref_id="RHSA-2025:8125" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8125"/>
        <reference ref_id="ALSA-2025:8125" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8125.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: Out-of-bounds access when resolving Promise objects (CVE-2025-4918)
  * firefox: Out-of-bounds access when optimizing linear sums (CVE-2025-4919)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-26"/>
          <updated date="2025-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367016" id="2367016"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367018" id="2367018"></bugzilla>
          <cve public="20250517" href="https://access.redhat.com/security/cve/CVE-2025-4918" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4918</cve>
          <cve public="20250517" href="https://access.redhat.com/security/cve/CVE-2025-4919" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4919</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125003" comment="firefox is earlier than 0:128.10.1-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258128" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8128: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2025-4035" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4035"/>
        <reference ref_id="CVE-2025-4948" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4948"/>
        <reference ref_id="CVE-2025-32049" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32049"/>
        <reference ref_id="CVE-2025-32907" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32907"/>
        <reference ref_id="RHSA-2025:8128" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8128"/>
        <reference ref_id="ALSA-2025:8128" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8128.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Denial of Service attack to websocket server (CVE-2025-32049)
  * libsoup: Denial of service in server when client requests a large amount of overlapping ranges with Range header (CVE-2025-32907)
  * libsoup: Cookie domain validation bypass via uppercase characters in libsoup (CVE-2025-4035)
  * libsoup: Integer Underflow in soup_multipart_new_from_message() Leading to Denial of Service in libsoup (CVE-2025-4948)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-26"/>
          <updated date="2025-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2357066" id="2357066"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359342" id="2359342"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362651" id="2362651"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367183" id="2367183"></bugzilla>
          <cve public="20250428" href="https://access.redhat.com/security/cve/CVE-2025-4035" impact="Moderate" cwe="CWE-178" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N">CVE-2025-4035</cve>
          <cve public="20250519" href="https://access.redhat.com/security/cve/CVE-2025-4948" impact="Important" cwe="CWE-191" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-4948</cve>
          <cve public="20250403" href="https://access.redhat.com/security/cve/CVE-2025-32049" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-32049</cve>
          <cve public="20250414" href="https://access.redhat.com/security/cve/CVE-2025-32907" impact="Moderate" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-32907</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128007" comment="libsoup3 is earlier than 0:3.6.5-3.el10_0.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128008" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_0.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128005" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_0.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263517" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3517: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2026-2447" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2447"/>
        <reference ref_id="CVE-2026-2757" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2757"/>
        <reference ref_id="CVE-2026-2758" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2758"/>
        <reference ref_id="CVE-2026-2759" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2759"/>
        <reference ref_id="CVE-2026-2760" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2760"/>
        <reference ref_id="CVE-2026-2761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2761"/>
        <reference ref_id="CVE-2026-2762" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2762"/>
        <reference ref_id="CVE-2026-2763" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2763"/>
        <reference ref_id="CVE-2026-2764" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2764"/>
        <reference ref_id="CVE-2026-2765" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2765"/>
        <reference ref_id="CVE-2026-2766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2766"/>
        <reference ref_id="CVE-2026-2767" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2767"/>
        <reference ref_id="CVE-2026-2768" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2768"/>
        <reference ref_id="CVE-2026-2769" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2769"/>
        <reference ref_id="CVE-2026-2770" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2770"/>
        <reference ref_id="CVE-2026-2771" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2771"/>
        <reference ref_id="CVE-2026-2772" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2772"/>
        <reference ref_id="CVE-2026-2773" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2773"/>
        <reference ref_id="CVE-2026-2774" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2774"/>
        <reference ref_id="CVE-2026-2775" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2775"/>
        <reference ref_id="CVE-2026-2776" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2776"/>
        <reference ref_id="CVE-2026-2777" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2777"/>
        <reference ref_id="CVE-2026-2778" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2778"/>
        <reference ref_id="CVE-2026-2779" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2779"/>
        <reference ref_id="CVE-2026-2780" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2780"/>
        <reference ref_id="CVE-2026-2781" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2781"/>
        <reference ref_id="CVE-2026-2782" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2782"/>
        <reference ref_id="CVE-2026-2783" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2783"/>
        <reference ref_id="CVE-2026-2784" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2784"/>
        <reference ref_id="CVE-2026-2785" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2785"/>
        <reference ref_id="CVE-2026-2786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2786"/>
        <reference ref_id="CVE-2026-2787" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2787"/>
        <reference ref_id="CVE-2026-2788" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2788"/>
        <reference ref_id="CVE-2026-2789" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2789"/>
        <reference ref_id="CVE-2026-2790" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2790"/>
        <reference ref_id="CVE-2026-2791" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2791"/>
        <reference ref_id="CVE-2026-2792" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2792"/>
        <reference ref_id="CVE-2026-2793" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2793"/>
        <reference ref_id="RHSA-2026:3517" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3517"/>
        <reference ref_id="ALSA-2026:3517" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3517.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * libvpx: Heap buffer overflow in libvpx (CVE-2026-2447)
  * firefox: Invalid pointer in the JavaScript Engine component (CVE-2026-2785)
  * firefox: Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 (CVE-2026-2793)
  * firefox: Undefined behavior in the DOM: Core &amp; HTML component (CVE-2026-2771)
  * firefox: Integer overflow in the Audio/Video component (CVE-2026-2774)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software (CVE-2026-2776)
  * firefox: Integer overflow in the Libraries component in NSS (CVE-2026-2781)
  * firefox: Use-after-free in the JavaScript Engine: JIT component (CVE-2026-2766)
  * firefox: Use-after-free in the Storage: IndexedDB component (CVE-2026-2769)
  * firefox: Use-after-free in the DOM: Window and Location component (CVE-2026-2787)
  * firefox: Sandbox escape in the Storage: IndexedDB component (CVE-2026-2768)
  * firefox: Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-2783)
  * firefox: Incorrect boundary conditions in the Audio/Video: GMP component (CVE-2026-2788)
  * firefox: Mitigation bypass in the DOM: Security component (CVE-2026-2784)
  * firefox: Incorrect boundary conditions in the Graphics: ImageLib component (CVE-2026-2759)
  * firefox: Integer overflow in the JavaScript: Standard Library component (CVE-2026-2762)
  * firefox: Sandbox escape in the Graphics: WebRender component (CVE-2026-2761)
  * firefox: Privilege escalation in the Messaging System component (CVE-2026-2777)
  * firefox: Same-origin policy bypass in the Networking: JAR component (CVE-2026-2790)
  * firefox: Mitigation bypass in the DOM: HTML Parser component (CVE-2026-2775)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-2763)
  * firefox: Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 (CVE-2026-2792)
  * firefox: Incorrect boundary conditions in the Web Audio component (CVE-2026-2773)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-2786)
  * firefox: Use-after-free in the Graphics: ImageLib component (CVE-2026-2789)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC: Audio/Video component (CVE-2026-2757)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component (CVE-2026-2760)
  * firefox: Use-after-free in the Audio/Video: Playback component (CVE-2026-2772)
  * firefox: Incorrect boundary conditions in the Networking: JAR component (CVE-2026-2779)
  * firefox: Use-after-free in the JavaScript: WebAssembly component (CVE-2026-2767)
  * firefox: JIT miscompilation, use-after-free in the JavaScript Engine: JIT component (CVE-2026-2764)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2026-2782)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-2765)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2026-2780)
  * firefox: Sandbox escape due to incorrect boundary conditions in the DOM: Core &amp; HTML component (CVE-2026-2778)
  * firefox: Use-after-free in the JavaScript: GC component (CVE-2026-2758)
  * firefox: Mitigation bypass in the Networking: Cache component (CVE-2026-2791)
  * firefox: Use-after-free in the DOM: Bindings (WebIDL) component (CVE-2026-2770)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-02"/>
          <updated date="2026-03-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2440219" id="2440219"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442284" id="2442284"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442287" id="2442287"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442288" id="2442288"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442290" id="2442290"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442291" id="2442291"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442292" id="2442292"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442294" id="2442294"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442295" id="2442295"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442297" id="2442297"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442298" id="2442298"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442300" id="2442300"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442302" id="2442302"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442304" id="2442304"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442307" id="2442307"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442308" id="2442308"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442309" id="2442309"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442312" id="2442312"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442313" id="2442313"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442314" id="2442314"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442316" id="2442316"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442318" id="2442318"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442319" id="2442319"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442320" id="2442320"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442322" id="2442322"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442324" id="2442324"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442325" id="2442325"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442326" id="2442326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442327" id="2442327"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442328" id="2442328"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442329" id="2442329"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442331" id="2442331"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442333" id="2442333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442334" id="2442334"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442335" id="2442335"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442337" id="2442337"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442342" id="2442342"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442343" id="2442343"></bugzilla>
          <cve public="20260216" href="https://access.redhat.com/security/cve/CVE-2026-2447" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2447</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2757" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2757</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2758" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2758</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2759" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2759</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2760" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2760</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2761" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2761</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2762" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2762</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2763" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2763</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2764" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2764</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2765" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2765</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2766" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2766</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2767" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2767</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2768" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2768</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2769" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2769</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2770" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2770</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2771" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2771</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2772" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2772</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2773" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2773</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2774" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2774</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2775" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2775</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2776" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2776</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2777" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2777</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2778" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2778</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2779" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2779</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2780" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2780</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2781" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2781</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2782" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2782</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2783" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2783</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2784" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2784</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2785" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2785</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2786" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2786</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2787" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2787</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2788" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2788</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2789" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2789</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2790" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-2790</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2791" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-2791</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2792" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2792</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2793" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2793</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263517001" comment="thunderbird is earlier than 0:140.8.0-2.el10_1.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258131" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8131: ruby security update (Moderate)</title>
        <reference ref_id="CVE-2025-25186" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-25186"/>
        <reference ref_id="CVE-2025-27219" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27219"/>
        <reference ref_id="CVE-2025-27221" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27221"/>
        <reference ref_id="RHSA-2025:8131" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8131"/>
        <reference ref_id="ALSA-2025:8131" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8131.html"/>
        <description>Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.  

Security Fix(es):  

  * net-imap: Net::IMAP vulnerable to possible DoS by memory exhaustion (CVE-2025-25186)
  * CGI: Denial of Service in CGI::Cookie.parse (CVE-2025-27219)
  * uri: userinfo leakage in URI#join, URI#merge and URI#+ (CVE-2025-27221)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-26"/>
          <updated date="2025-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2344680" id="2344680"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2349699" id="2349699"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2349700" id="2349700"></bugzilla>
          <cve public="20250210" href="https://access.redhat.com/security/cve/CVE-2025-25186" impact="Moderate" cwe="(CWE-1287|CWE-400|CWE-405|CWE-409|CWE-770|CWE-789)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-25186</cve>
          <cve public="20250303" href="https://access.redhat.com/security/cve/CVE-2025-27219" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-27219</cve>
          <cve public="20250303" href="https://access.redhat.com/security/cve/CVE-2025-27221" impact="Low" cwe="CWE-212" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N">CVE-2025-27221</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131049" comment="ruby is earlier than 0:3.3.8-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131002" comment="ruby is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131050" comment="ruby-bundled-gems is earlier than 0:3.3.8-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131004" comment="ruby-bundled-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131051" comment="ruby-devel is earlier than 0:3.3.8-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131006" comment="ruby-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131052" comment="ruby-libs is earlier than 0:3.3.8-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131008" comment="ruby-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131053" comment="rubygem-bigdecimal is earlier than 0:3.1.5-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131010" comment="rubygem-bigdecimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131054" comment="rubygem-io-console is earlier than 0:0.7.1-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131012" comment="rubygem-io-console is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131055" comment="rubygem-json is earlier than 0:2.7.2-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131014" comment="rubygem-json is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131056" comment="rubygem-psych is earlier than 0:5.1.2-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131016" comment="rubygem-psych is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131057" comment="rubygem-racc is earlier than 0:1.7.3-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131018" comment="rubygem-racc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131058" comment="rubygem-rbs is earlier than 0:3.4.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131020" comment="rubygem-rbs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131021" comment="ruby-default-gems is earlier than 0:3.3.8-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131022" comment="ruby-default-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131023" comment="rubygem-bundler is earlier than 0:2.5.22-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131024" comment="rubygem-bundler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131025" comment="rubygem-irb is earlier than 0:1.13.1-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131026" comment="rubygem-irb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131027" comment="rubygem-minitest is earlier than 0:5.20.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131028" comment="rubygem-minitest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131029" comment="rubygem-power_assert is earlier than 0:2.0.3-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131030" comment="rubygem-power_assert is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131031" comment="rubygem-rake is earlier than 0:13.1.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131032" comment="rubygem-rake is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131033" comment="rubygem-rdoc is earlier than 0:6.6.3.1-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131034" comment="rubygem-rdoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131035" comment="rubygem-rexml is earlier than 0:3.3.9-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131036" comment="rubygem-rexml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131037" comment="rubygem-rss is earlier than 0:0.3.1-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131038" comment="rubygem-rss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131039" comment="rubygem-test-unit is earlier than 0:3.6.1-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131040" comment="rubygem-test-unit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131041" comment="rubygem-typeprof is earlier than 0:0.21.9-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131042" comment="rubygem-typeprof is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131043" comment="rubygems is earlier than 0:3.5.22-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131044" comment="rubygems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131045" comment="rubygems-devel is earlier than 0:3.5.22-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131046" comment="rubygems-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131047" comment="ruby-doc is earlier than 0:3.3.8-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131048" comment="ruby-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258196" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8196: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-3875" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3875"/>
        <reference ref_id="CVE-2025-3877" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3877"/>
        <reference ref_id="CVE-2025-3909" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3909"/>
        <reference ref_id="CVE-2025-3932" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3932"/>
        <reference ref_id="RHSA-2025:8196" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8196"/>
        <reference ref_id="ALSA-2025:8196" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8196.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * thunderbird: JavaScript Execution via Spoofed PDF Attachment and file:/// Link (CVE-2025-3909)
  * thunderbird: Sender Spoofing via Malformed From Header in Thunderbird (CVE-2025-3875)
  * thunderbird: Unsolicited File Download, Disk Space Exhaustion, and Credential Leakage via mailbox:/// Links (CVE-2025-3877)
  * thunderbird: Tracking Links in Attachments Bypassed Remote Content Blocking (CVE-2025-3932)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-27"/>
          <updated date="2025-05-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2366283" id="2366283"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2366287" id="2366287"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2366291" id="2366291"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2366297" id="2366297"></bugzilla>
          <cve public="20250514" href="https://access.redhat.com/security/cve/CVE-2025-3875" impact="Important" cwe="CWE-290" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2025-3875</cve>
          <cve public="20250514" href="https://access.redhat.com/security/cve/CVE-2025-3877" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L">CVE-2025-3877</cve>
          <cve public="20250514" href="https://access.redhat.com/security/cve/CVE-2025-3909" impact="Important" cwe="CWE-290" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2025-3909</cve>
          <cve public="20250514" href="https://access.redhat.com/security/cve/CVE-2025-3932" impact="Low" cwe="CWE-288" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2025-3932</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196003" comment="thunderbird is earlier than 0:128.10.1-1.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258184" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8184: gstreamer1-plugins-bad-free security update (Important)</title>
        <reference ref_id="CVE-2025-3887" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3887"/>
        <reference ref_id="RHSA-2025:8184" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8184"/>
        <reference ref_id="ALSA-2025:8184" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8184.html"/>
        <description>GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer.  

Security Fix(es):  

  * GStreamer: GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability (CVE-2025-3887)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-27"/>
          <updated date="2025-05-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367919" id="2367919"></bugzilla>
          <cve public="20250522" href="https://access.redhat.com/security/cve/CVE-2025-3887" impact="Important" cwe="CWE-121" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-3887</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184007" comment="gstreamer1-plugins-bad-free is earlier than 0:1.24.11-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184002" comment="gstreamer1-plugins-bad-free is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184008" comment="gstreamer1-plugins-bad-free-libs is earlier than 0:1.24.11-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184004" comment="gstreamer1-plugins-bad-free-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184009" comment="gstreamer1-plugins-bad-free-devel is earlier than 0:1.24.11-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184006" comment="gstreamer1-plugins-bad-free-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258550" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8550: varnish security update (Important)</title>
        <reference ref_id="CVE-2025-47905" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47905"/>
        <reference ref_id="RHSA-2025:8550" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8550"/>
        <reference ref_id="ALSA-2025:8550" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8550.html"/>
        <description>Varnish Cache is a high-performance HTTP accelerator. It stores web pages in memory so web servers don't have to create the same web page over and over again, giving the website a significant speed up.  

Security Fix(es):  

  * varnish: request smuggling attacks (CVE-2025-47905)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-04"/>
          <updated date="2025-06-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2364235" id="2364235"></bugzilla>
          <cve public="20250513" href="https://access.redhat.com/security/cve/CVE-2025-47905" impact="Important" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2025-47905</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258550007" comment="varnish is earlier than 0:7.6.1-2.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258550002" comment="varnish is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258550008" comment="varnish-docs is earlier than 0:7.6.1-2.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258550004" comment="varnish-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258550009" comment="varnish-devel is earlier than 0:7.6.1-2.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258550006" comment="varnish-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258814" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8814: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2025-30399" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30399"/>
        <reference ref_id="RHSA-2025:8814" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8814"/>
        <reference ref_id="ALSA-2025:8814" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8814.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.117 and .NET Runtime 8.0.17.Security Fix(es):  

  * dotnet: .NET Remote Code Vulnerability (CVE-2025-30399)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-11"/>
          <updated date="2025-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369701" id="2369701"></bugzilla>
          <cve public="20250610" href="https://access.redhat.com/security/cve/CVE-2025-30399" impact="Important" cwe="CWE-427" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-30399</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814013" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814014" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814015" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814016" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814017" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814018" comment="dotnet-runtime-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814019" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814020" comment="dotnet-sdk-8.0 is earlier than 0:8.0.117-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814021" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.117-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814022" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.17-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814023" comment="dotnet-templates-8.0 is earlier than 0:8.0.117-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258814024" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.117-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510195" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10195: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-5986" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5986"/>
        <reference ref_id="RHSA-2025:10195" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10195"/>
        <reference ref_id="ALSA-2025:10195" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10195.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * thunderbird: Unsolicited File Download, Disk Space Exhaustion, and Credential Leakage via mailbox:/// Links (CVE-2025-5986)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-02"/>
          <updated date="2025-07-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2372281" id="2372281"></bugzilla>
          <cve public="20250610" href="https://access.redhat.com/security/cve/CVE-2025-5986" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-5986</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202510195001" comment="thunderbird is earlier than 0:128.12.0-1.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259146" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9146: podman security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9146" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9146"/>
        <reference ref_id="ALSA-2025:9146" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9146.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146001" comment="podman is earlier than 6:5.4.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146003" comment="podman-remote is earlier than 6:5.4.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146005" comment="podman-tests is earlier than 6:5.4.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146007" comment="podman-docker is earlier than 6:5.4.0-10.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511855" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11855: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-22091" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22091"/>
        <reference ref_id="CVE-2025-22121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22121"/>
        <reference ref_id="CVE-2025-37797" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37797"/>
        <reference ref_id="CVE-2025-38088" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38088"/>
        <reference ref_id="CVE-2025-38110" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38110"/>
        <reference ref_id="RHSA-2025:11855" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11855"/>
        <reference ref_id="ALSA-2025:11855" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11855.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: RDMA/mlx5: Fix page_size variable overflow (CVE-2025-22091)
  * kernel: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all() (CVE-2025-22121)
  * kernel: net_sched: hfsc: Fix a UAF vulnerability in class handling (CVE-2025-37797)
  * kernel: powerpc/powernv/memtrace: Fix out of bounds issue in memtrace mmap (CVE-2025-38088)
  * kernel: net/mdiobus: Fix potential out-of-bounds clause 45 read/write access (CVE-2025-38110)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-28"/>
          <updated date="2025-07-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360186" id="2360186"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360199" id="2360199"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2363672" id="2363672"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2375528" id="2375528"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376035" id="2376035"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22091" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22091</cve>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22121" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-22121</cve>
          <cve public="20250502" href="https://access.redhat.com/security/cve/CVE-2025-37797" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-37797</cve>
          <cve public="20250630" href="https://access.redhat.com/security/cve/CVE-2025-38088" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38088</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38110" impact="Moderate" cwe="CWE-1284" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N">CVE-2025-38110</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855001" comment="kernel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855002" comment="kernel-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855003" comment="kernel-debug is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855004" comment="kernel-debug-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855011" comment="kernel-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855013" comment="kernel-headers is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855014" comment="kernel-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855015" comment="kernel-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855017" comment="kernel-rt is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855018" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855019" comment="libperf is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855020" comment="kernel-cross-headers is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855021" comment="kernel-rt-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855022" comment="kernel-rt-debug is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855023" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855024" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855025" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855026" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855027" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855028" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855029" comment="kernel-rt-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855030" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855031" comment="kernel-rt-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855032" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855033" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855034" comment="kernel-tools is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855035" comment="kernel-tools-libs is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855036" comment="kernel-uki-virt is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855037" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855038" comment="perf is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855039" comment="python3-perf is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855040" comment="rtla is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855041" comment="rv is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855042" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855043" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855044" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855045" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855046" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855047" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855048" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855049" comment="kernel-64k is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855050" comment="kernel-64k-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855051" comment="kernel-64k-debug is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855052" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855053" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855054" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855055" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855056" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855057" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855058" comment="kernel-64k-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855059" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855060" comment="kernel-64k-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855061" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855062" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855063" comment="kernel-rt-64k is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855064" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855065" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855066" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855067" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855068" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855069" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855070" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855071" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855072" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855073" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855074" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511855076" comment="kernel-doc is earlier than 0:6.12.0-55.24.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259148" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9148: buildah security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9148" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9148"/>
        <reference ref_id="ALSA-2025:9148" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9148.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148001" comment="buildah is earlier than 2:1.39.4-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148003" comment="buildah-tests is earlier than 2:1.39.4-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259151" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9151: gvisor-tap-vsock security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9151" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9151"/>
        <reference ref_id="ALSA-2025:9151" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9151.html"/>
        <description>A replacement for libslirp and VPNKit, written in pure Go. It is based on the network stack of gVisor. Compared to libslirp, gvisor-tap-vsock brings a configurable DNS server and dynamic port forwarding.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259151001" comment="gvisor-tap-vsock is earlier than 6:0.8.5-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259151002" comment="gvisor-tap-vsock is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259151003" comment="gvisor-tap-vsock-gvforwarder is earlier than 6:0.8.5-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259151004" comment="gvisor-tap-vsock-gvforwarder is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259149" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9149: skopeo security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9149" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9149"/>
        <reference ref_id="ALSA-2025:9149" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9149.html"/>
        <description>The skopeo command lets you inspect images from container image registries, get images and image layers, and use signatures to create and verify files.   

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149001" comment="skopeo is earlier than 2:1.18.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149002" comment="skopeo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149003" comment="skopeo-tests is earlier than 2:1.18.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149004" comment="skopeo-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:2025000003" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:A003: open-vm-tools security update (Moderate)</title>
        <reference ref_id="CVE-2025-22247" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22247"/>
        <reference ref_id="ALSA-2025:A003" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-A003.html"/>
        <description>The Open Virtual Machine Tools are the open source implementation of the VMware Tools. They are a set of guest operating system virtualization components that enhance performance and user experience of virtual machines.

Security Fix(es):

* open-vm-tools:A malicious actor with non-administrative privileges on a guest virtual machine (VM) may tamper with the local files to trigger insecure file operations within that VM. (CVE-2025-22247)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-20"/>
          <updated date="2025-06-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2364261" id="2364261"></bugzilla>
          <cve public="20250512" href="https://access.redhat.com/security/cve/CVE-2025-22247" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N">CVE-2025-22247</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003001" comment="open-vm-tools-test is earlier than 0:12.5.0-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003002" comment="open-vm-tools-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003003" comment="open-vm-tools-salt-minion is earlier than 0:12.5.0-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003004" comment="open-vm-tools-salt-minion is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003005" comment="open-vm-tools-devel is earlier than 0:12.5.0-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003006" comment="open-vm-tools-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003007" comment="open-vm-tools-sdmp is earlier than 0:12.5.0-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003008" comment="open-vm-tools-sdmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003009" comment="open-vm-tools is earlier than 0:12.5.0-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003010" comment="open-vm-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003011" comment="open-vm-tools-desktop is earlier than 0:12.5.0-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003012" comment="open-vm-tools-desktop is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257517" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7517: sqlite security update (Important)</title>
        <reference ref_id="CVE-2025-3277" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3277"/>
        <reference ref_id="RHSA-2025:7517" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7517"/>
        <reference ref_id="ALSA-2025:7517" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7517.html"/>
        <description>SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supporting a separate database server.  

Security Fix(es):  

  * SQLite: integer overflow in SQLite (CVE-2025-3277)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359553" id="2359553"></bugzilla>
          <cve public="20250414" href="https://access.redhat.com/security/cve/CVE-2025-3277" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-3277</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517007" comment="sqlite is earlier than 0:3.46.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517002" comment="sqlite is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517008" comment="sqlite-devel is earlier than 0:3.46.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517004" comment="sqlite-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517009" comment="sqlite-libs is earlier than 0:3.46.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517006" comment="sqlite-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258493" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8493: nodejs22 security update (Important)</title>
        <reference ref_id="CVE-2025-23166" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-23166"/>
        <reference ref_id="RHSA-2025:8493" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8493"/>
        <reference ref_id="ALSA-2025:8493" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8493.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime \ for easily building fast, scalable network applications. \ Node.js uses an event-driven, non-blocking I/O model that \ makes it lightweight and efficient, perfect for data-intensive \ real-time applications that run across distributed devices.  

Security Fix(es):  

  * nodejs: Remote Crash via SignTraits::DeriveBits() in Node.js (CVE-2025-23166)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-04"/>
          <updated date="2025-06-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367163" id="2367163"></bugzilla>
          <cve public="20250519" href="https://access.redhat.com/security/cve/CVE-2025-23166" impact="Important" cwe="CWE-248" cvss3="CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-23166</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493013" comment="nodejs is earlier than 1:22.16.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493002" comment="nodejs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493014" comment="nodejs-devel is earlier than 1:22.16.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493004" comment="nodejs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493015" comment="nodejs-full-i18n is earlier than 1:22.16.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493006" comment="nodejs-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493016" comment="nodejs-libs is earlier than 1:22.16.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493008" comment="nodejs-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493017" comment="nodejs-npm is earlier than 1:10.9.2-1.22.16.0.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493010" comment="nodejs-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493011" comment="nodejs-docs is earlier than 1:22.16.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493012" comment="nodejs-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:2025000006" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:A006: libblockdev security update (Important)</title>
        <reference ref_id="CVE-2025-6019" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6019"/>
        <reference ref_id="ALSA-2025:A006" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-A006.html"/>
        <description>libblockdev is a C library supporting GObject introspection for manipulation of block devices. It has a plugin-based architecture where each technology (like LVM, Btrfs, MD RAID, Swap,...) is implemented in a separate plugin, possibly with multiple implementations (e.g. using LVM CLI or the new LVM DBus API).

Security Fix(es):

* libblockdev: Due to the way libblockdev interacts with the udisks daemon, an "allow_active" user on a system may be able escalate to full root privileges on the target host. (CVE-2025-6019)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-20"/>
          <updated date="2025-06-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2370051" id="2370051"></bugzilla>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-6019" impact="Important" cwe="CWE-250" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-6019</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006001" comment="libblockdev-loop is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328005" comment="libblockdev-loop is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006002" comment="libblockdev-loop is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006003" comment="libblockdev-mdraid-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006004" comment="libblockdev-mdraid-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006005" comment="libblockdev-nvme-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006006" comment="libblockdev-nvme-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006007" comment="libblockdev-nvdimm-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006008" comment="libblockdev-nvdimm-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006009" comment="python3-blockdev is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328019" comment="python3-blockdev is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006010" comment="python3-blockdev is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006011" comment="libblockdev-lvm-dbus is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328007" comment="libblockdev-lvm-dbus is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006012" comment="libblockdev-lvm-dbus is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006013" comment="libblockdev-fs is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328004" comment="libblockdev-fs is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006014" comment="libblockdev-fs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006015" comment="libblockdev-loop-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006016" comment="libblockdev-loop-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006017" comment="libblockdev-mdraid is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328008" comment="libblockdev-mdraid is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006018" comment="libblockdev-mdraid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006019" comment="libblockdev-smartmontools is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328015" comment="libblockdev-smartmontools is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006020" comment="libblockdev-smartmontools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006021" comment="libblockdev-part is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328012" comment="libblockdev-part is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006022" comment="libblockdev-part is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006023" comment="libblockdev-smartmontools-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006024" comment="libblockdev-smartmontools-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006025" comment="libblockdev-nvme is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328011" comment="libblockdev-nvme is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006026" comment="libblockdev-nvme is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006027" comment="libblockdev-dm is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328003" comment="libblockdev-dm is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006028" comment="libblockdev-dm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006029" comment="libblockdev-plugins-all is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328013" comment="libblockdev-plugins-all is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006030" comment="libblockdev-plugins-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006031" comment="libblockdev-dm-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006032" comment="libblockdev-dm-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006033" comment="libblockdev-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006034" comment="libblockdev-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006035" comment="libblockdev-mpath is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328009" comment="libblockdev-mpath is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006036" comment="libblockdev-mpath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006037" comment="libblockdev-lvm-dbus-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006038" comment="libblockdev-lvm-dbus-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006039" comment="libblockdev-utils-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006040" comment="libblockdev-utils-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006041" comment="libblockdev-nvdimm is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328010" comment="libblockdev-nvdimm is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006042" comment="libblockdev-nvdimm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006043" comment="libblockdev-swap is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328016" comment="libblockdev-swap is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006044" comment="libblockdev-swap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006045" comment="libblockdev-utils is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328018" comment="libblockdev-utils is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006046" comment="libblockdev-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006047" comment="libblockdev is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328001" comment="libblockdev is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006048" comment="libblockdev is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006049" comment="libblockdev-tools is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328017" comment="libblockdev-tools is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006050" comment="libblockdev-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006051" comment="libblockdev-mpath-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006052" comment="libblockdev-mpath-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006053" comment="libblockdev-smart-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006054" comment="libblockdev-smart-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006055" comment="libblockdev-lvm is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328006" comment="libblockdev-lvm is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006056" comment="libblockdev-lvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006057" comment="libblockdev-lvm-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006058" comment="libblockdev-lvm-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006059" comment="libblockdev-crypto-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006060" comment="libblockdev-crypto-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006061" comment="libblockdev-part-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006062" comment="libblockdev-part-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006063" comment="libblockdev-swap-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006064" comment="libblockdev-swap-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006065" comment="libblockdev-fs-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006066" comment="libblockdev-fs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006067" comment="libblockdev-smart is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328014" comment="libblockdev-smart is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006068" comment="libblockdev-smart is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006069" comment="libblockdev-crypto is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328002" comment="libblockdev-crypto is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006070" comment="libblockdev-crypto is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006071" comment="libblockdev-s390-devel is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006072" comment="libblockdev-s390-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006073" comment="libblockdev-s390 is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328020" comment="libblockdev-s390 is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006074" comment="libblockdev-s390 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258477" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8477: golang security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:8477" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8477"/>
        <reference ref_id="ALSA-2025:8477" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8477.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-04"/>
          <updated date="2025-06-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477015" comment="go-toolset is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477016" comment="golang is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477017" comment="golang-bin is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477007" comment="golang-misc is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477009" comment="golang-src is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477011" comment="golang-docs is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477013" comment="golang-tests is earlier than 0:1.23.9-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258608" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8608: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-4918" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4918"/>
        <reference ref_id="CVE-2025-4919" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4919"/>
        <reference ref_id="CVE-2025-5263" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5263"/>
        <reference ref_id="CVE-2025-5264" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5264"/>
        <reference ref_id="CVE-2025-5266" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5266"/>
        <reference ref_id="CVE-2025-5267" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5267"/>
        <reference ref_id="CVE-2025-5268" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5268"/>
        <reference ref_id="CVE-2025-5269" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5269"/>
        <reference ref_id="RHSA-2025:8608" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8608"/>
        <reference ref_id="ALSA-2025:8608" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8608.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Out-of-bounds access when resolving Promise objects (CVE-2025-4918)
  * firefox: thunderbird: Out-of-bounds access when optimizing linear sums (CVE-2025-4919)
  * firefox: thunderbird: Clickjacking vulnerability could have led to leaking saved payment card details (CVE-2025-5267)
  * firefox: thunderbird: Potential local code execution in ?Copy as cURL? command (CVE-2025-5264)
  * firefox: thunderbird: Memory safety bugs (CVE-2025-5268)
  * firefox: thunderbird: Script element events leaked cross-origin resource status (CVE-2025-5266)
  * firefox: thunderbird: Error handling for script execution was incorrectly isolated from web content (CVE-2025-5263)
  * firefox: thunderbird: Memory safety bug (CVE-2025-5269)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-05"/>
          <updated date="2025-06-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367016" id="2367016"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367018" id="2367018"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368750" id="2368750"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368751" id="2368751"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368752" id="2368752"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368755" id="2368755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368756" id="2368756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368757" id="2368757"></bugzilla>
          <cve public="20250517" href="https://access.redhat.com/security/cve/CVE-2025-4918" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4918</cve>
          <cve public="20250517" href="https://access.redhat.com/security/cve/CVE-2025-4919" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4919</cve>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5263" impact="Moderate" cwe="CWE-829" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5263</cve>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5264" impact="Moderate" cwe="CWE-116" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5264</cve>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5266" impact="Moderate" cwe="CWE-829" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5266</cve>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5267" impact="Low" cwe="CWE-1021" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-5267</cve>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5268" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5268</cve>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5269" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5269</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258608002" comment="thunderbird is earlier than 0:128.11.0-1.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202513240" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:13240: glibc security update (Moderate)</title>
        <reference ref_id="CVE-2025-8058" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8058"/>
        <reference ref_id="RHSA-2025:13240" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:13240"/>
        <reference ref_id="ALSA-2025:13240" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-13240.html"/>
        <description>The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.  

Security Fix(es):  

  * glibc: Double free in glibc (CVE-2025-8058)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-06"/>
          <updated date="2025-08-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2383146" id="2383146"></bugzilla>
          <cve public="20250723" href="https://access.redhat.com/security/cve/CVE-2025-8058" impact="Moderate" cwe="CWE-415" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L">CVE-2025-8058</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240001" comment="glibc is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066002" comment="glibc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240002" comment="glibc-all-langpacks is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066004" comment="glibc-all-langpacks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240003" comment="glibc-common is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066006" comment="glibc-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240004" comment="glibc-devel is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066008" comment="glibc-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240005" comment="glibc-gconv-extra is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066010" comment="glibc-gconv-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240006" comment="glibc-langpack-aa is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066012" comment="glibc-langpack-aa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240007" comment="glibc-langpack-af is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066014" comment="glibc-langpack-af is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240008" comment="glibc-langpack-agr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066016" comment="glibc-langpack-agr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240009" comment="glibc-langpack-ak is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066018" comment="glibc-langpack-ak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240010" comment="glibc-langpack-am is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066020" comment="glibc-langpack-am is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240011" comment="glibc-langpack-an is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066022" comment="glibc-langpack-an is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240012" comment="glibc-langpack-anp is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066024" comment="glibc-langpack-anp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240013" comment="glibc-langpack-ar is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066026" comment="glibc-langpack-ar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240014" comment="glibc-langpack-as is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066028" comment="glibc-langpack-as is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240015" comment="glibc-langpack-ast is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066030" comment="glibc-langpack-ast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240016" comment="glibc-langpack-ayc is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066098" comment="glibc-langpack-ayc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240017" comment="glibc-langpack-az is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066100" comment="glibc-langpack-az is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240018" comment="glibc-langpack-be is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066102" comment="glibc-langpack-be is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240019" comment="glibc-langpack-bem is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066104" comment="glibc-langpack-bem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240020" comment="glibc-langpack-ber is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066106" comment="glibc-langpack-ber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240021" comment="glibc-langpack-bg is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066108" comment="glibc-langpack-bg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240022" comment="glibc-langpack-bhb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066110" comment="glibc-langpack-bhb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240023" comment="glibc-langpack-bho is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066112" comment="glibc-langpack-bho is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240024" comment="glibc-langpack-bi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066114" comment="glibc-langpack-bi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240025" comment="glibc-langpack-bn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066116" comment="glibc-langpack-bn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240026" comment="glibc-langpack-bo is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066118" comment="glibc-langpack-bo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240027" comment="glibc-langpack-br is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066120" comment="glibc-langpack-br is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240028" comment="glibc-langpack-brx is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066122" comment="glibc-langpack-brx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240029" comment="glibc-langpack-bs is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066124" comment="glibc-langpack-bs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240030" comment="glibc-langpack-byn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066126" comment="glibc-langpack-byn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240031" comment="glibc-langpack-ca is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066128" comment="glibc-langpack-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240032" comment="glibc-langpack-ce is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066130" comment="glibc-langpack-ce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240033" comment="glibc-langpack-chr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066132" comment="glibc-langpack-chr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240034" comment="glibc-langpack-ckb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066134" comment="glibc-langpack-ckb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240035" comment="glibc-langpack-cmn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066136" comment="glibc-langpack-cmn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240036" comment="glibc-langpack-crh is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066138" comment="glibc-langpack-crh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240037" comment="glibc-langpack-cs is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066140" comment="glibc-langpack-cs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240038" comment="glibc-langpack-csb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066142" comment="glibc-langpack-csb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240039" comment="glibc-langpack-cv is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066144" comment="glibc-langpack-cv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240040" comment="glibc-langpack-cy is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066146" comment="glibc-langpack-cy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240041" comment="glibc-langpack-da is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066148" comment="glibc-langpack-da is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240042" comment="glibc-langpack-de is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066150" comment="glibc-langpack-de is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240043" comment="glibc-langpack-doi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066152" comment="glibc-langpack-doi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240044" comment="glibc-langpack-dsb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066154" comment="glibc-langpack-dsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240045" comment="glibc-langpack-dv is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066156" comment="glibc-langpack-dv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240046" comment="glibc-langpack-dz is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066158" comment="glibc-langpack-dz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240047" comment="glibc-langpack-el is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066160" comment="glibc-langpack-el is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240048" comment="glibc-langpack-en is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066162" comment="glibc-langpack-en is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240049" comment="glibc-langpack-eo is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066164" comment="glibc-langpack-eo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240050" comment="glibc-langpack-es is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066166" comment="glibc-langpack-es is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240051" comment="glibc-langpack-et is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066168" comment="glibc-langpack-et is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240052" comment="glibc-langpack-eu is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066170" comment="glibc-langpack-eu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240053" comment="glibc-langpack-fa is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066172" comment="glibc-langpack-fa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240054" comment="glibc-langpack-ff is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066174" comment="glibc-langpack-ff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240055" comment="glibc-langpack-fi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066176" comment="glibc-langpack-fi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240056" comment="glibc-langpack-fil is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066178" comment="glibc-langpack-fil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240057" comment="glibc-langpack-fo is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066180" comment="glibc-langpack-fo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240058" comment="glibc-langpack-fr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066182" comment="glibc-langpack-fr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240059" comment="glibc-langpack-fur is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066184" comment="glibc-langpack-fur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240060" comment="glibc-langpack-fy is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066186" comment="glibc-langpack-fy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240061" comment="glibc-langpack-ga is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066188" comment="glibc-langpack-ga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240062" comment="glibc-langpack-gbm is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066190" comment="glibc-langpack-gbm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240063" comment="glibc-langpack-gd is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066192" comment="glibc-langpack-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240064" comment="glibc-langpack-gez is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066194" comment="glibc-langpack-gez is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240065" comment="glibc-langpack-gl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066196" comment="glibc-langpack-gl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240066" comment="glibc-langpack-gu is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066198" comment="glibc-langpack-gu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240067" comment="glibc-langpack-gv is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066200" comment="glibc-langpack-gv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240068" comment="glibc-langpack-ha is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066202" comment="glibc-langpack-ha is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240069" comment="glibc-langpack-hak is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066204" comment="glibc-langpack-hak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240070" comment="glibc-langpack-he is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066206" comment="glibc-langpack-he is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240071" comment="glibc-langpack-hi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066208" comment="glibc-langpack-hi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240072" comment="glibc-langpack-hif is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066210" comment="glibc-langpack-hif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240073" comment="glibc-langpack-hne is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066212" comment="glibc-langpack-hne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240074" comment="glibc-langpack-hr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066214" comment="glibc-langpack-hr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240075" comment="glibc-langpack-hsb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066216" comment="glibc-langpack-hsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240076" comment="glibc-langpack-ht is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066218" comment="glibc-langpack-ht is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240077" comment="glibc-langpack-hu is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066220" comment="glibc-langpack-hu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240078" comment="glibc-langpack-hy is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066222" comment="glibc-langpack-hy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240079" comment="glibc-langpack-ia is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066224" comment="glibc-langpack-ia is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240080" comment="glibc-langpack-id is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066226" comment="glibc-langpack-id is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240081" comment="glibc-langpack-ig is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066228" comment="glibc-langpack-ig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240082" comment="glibc-langpack-ik is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066230" comment="glibc-langpack-ik is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240083" comment="glibc-langpack-is is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066232" comment="glibc-langpack-is is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240084" comment="glibc-langpack-it is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066234" comment="glibc-langpack-it is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240085" comment="glibc-langpack-iu is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066236" comment="glibc-langpack-iu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240086" comment="glibc-langpack-ja is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066238" comment="glibc-langpack-ja is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240087" comment="glibc-langpack-ka is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066240" comment="glibc-langpack-ka is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240088" comment="glibc-langpack-kab is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066242" comment="glibc-langpack-kab is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240089" comment="glibc-langpack-kk is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066244" comment="glibc-langpack-kk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240090" comment="glibc-langpack-kl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066246" comment="glibc-langpack-kl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240091" comment="glibc-langpack-km is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066248" comment="glibc-langpack-km is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240092" comment="glibc-langpack-kn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066250" comment="glibc-langpack-kn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240093" comment="glibc-langpack-ko is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066252" comment="glibc-langpack-ko is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240094" comment="glibc-langpack-kok is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066254" comment="glibc-langpack-kok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240095" comment="glibc-langpack-ks is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066256" comment="glibc-langpack-ks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240096" comment="glibc-langpack-ku is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066258" comment="glibc-langpack-ku is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240097" comment="glibc-langpack-kv is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066260" comment="glibc-langpack-kv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240098" comment="glibc-langpack-kw is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066262" comment="glibc-langpack-kw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240099" comment="glibc-langpack-ky is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066264" comment="glibc-langpack-ky is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240100" comment="glibc-langpack-lb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066266" comment="glibc-langpack-lb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240101" comment="glibc-langpack-lg is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066268" comment="glibc-langpack-lg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240102" comment="glibc-langpack-li is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066270" comment="glibc-langpack-li is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240103" comment="glibc-langpack-lij is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066272" comment="glibc-langpack-lij is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240104" comment="glibc-langpack-ln is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066274" comment="glibc-langpack-ln is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240105" comment="glibc-langpack-lo is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066276" comment="glibc-langpack-lo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240106" comment="glibc-langpack-lt is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066278" comment="glibc-langpack-lt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240107" comment="glibc-langpack-lv is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066280" comment="glibc-langpack-lv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240108" comment="glibc-langpack-lzh is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066282" comment="glibc-langpack-lzh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240109" comment="glibc-langpack-mag is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066284" comment="glibc-langpack-mag is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240110" comment="glibc-langpack-mai is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066286" comment="glibc-langpack-mai is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240111" comment="glibc-langpack-mfe is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066288" comment="glibc-langpack-mfe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240112" comment="glibc-langpack-mg is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066290" comment="glibc-langpack-mg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240113" comment="glibc-langpack-mhr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066292" comment="glibc-langpack-mhr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240114" comment="glibc-langpack-mi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066294" comment="glibc-langpack-mi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240115" comment="glibc-langpack-miq is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066296" comment="glibc-langpack-miq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240116" comment="glibc-langpack-mjw is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066298" comment="glibc-langpack-mjw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240117" comment="glibc-langpack-mk is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066300" comment="glibc-langpack-mk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240118" comment="glibc-langpack-ml is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066302" comment="glibc-langpack-ml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240119" comment="glibc-langpack-mn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066304" comment="glibc-langpack-mn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240120" comment="glibc-langpack-mni is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066306" comment="glibc-langpack-mni is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240121" comment="glibc-langpack-mnw is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066308" comment="glibc-langpack-mnw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240122" comment="glibc-langpack-mr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066310" comment="glibc-langpack-mr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240123" comment="glibc-langpack-ms is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066312" comment="glibc-langpack-ms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240124" comment="glibc-langpack-mt is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066314" comment="glibc-langpack-mt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240125" comment="glibc-langpack-my is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066316" comment="glibc-langpack-my is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240126" comment="glibc-langpack-nan is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066318" comment="glibc-langpack-nan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240127" comment="glibc-langpack-nb is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066320" comment="glibc-langpack-nb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240128" comment="glibc-langpack-nds is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066322" comment="glibc-langpack-nds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240129" comment="glibc-langpack-ne is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066324" comment="glibc-langpack-ne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240130" comment="glibc-langpack-nhn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066326" comment="glibc-langpack-nhn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240131" comment="glibc-langpack-niu is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066328" comment="glibc-langpack-niu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240132" comment="glibc-langpack-nl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066330" comment="glibc-langpack-nl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240133" comment="glibc-langpack-nn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066332" comment="glibc-langpack-nn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240134" comment="glibc-langpack-nr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066334" comment="glibc-langpack-nr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240135" comment="glibc-langpack-nso is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066336" comment="glibc-langpack-nso is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240136" comment="glibc-langpack-oc is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066338" comment="glibc-langpack-oc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240137" comment="glibc-langpack-om is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066340" comment="glibc-langpack-om is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240138" comment="glibc-langpack-or is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066342" comment="glibc-langpack-or is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240139" comment="glibc-langpack-os is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066344" comment="glibc-langpack-os is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240140" comment="glibc-langpack-pa is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066346" comment="glibc-langpack-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240141" comment="glibc-langpack-pap is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066348" comment="glibc-langpack-pap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240142" comment="glibc-langpack-pl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066350" comment="glibc-langpack-pl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240143" comment="glibc-langpack-ps is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066352" comment="glibc-langpack-ps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240144" comment="glibc-langpack-pt is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066354" comment="glibc-langpack-pt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240145" comment="glibc-langpack-quz is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066356" comment="glibc-langpack-quz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240146" comment="glibc-langpack-raj is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066358" comment="glibc-langpack-raj is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240147" comment="glibc-langpack-rif is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066360" comment="glibc-langpack-rif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240148" comment="glibc-langpack-ro is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066362" comment="glibc-langpack-ro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240149" comment="glibc-langpack-ru is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066364" comment="glibc-langpack-ru is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240150" comment="glibc-langpack-rw is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066366" comment="glibc-langpack-rw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240151" comment="glibc-langpack-sa is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066368" comment="glibc-langpack-sa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240152" comment="glibc-langpack-sah is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066370" comment="glibc-langpack-sah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240153" comment="glibc-langpack-sat is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066372" comment="glibc-langpack-sat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240154" comment="glibc-langpack-sc is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066374" comment="glibc-langpack-sc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240155" comment="glibc-langpack-sd is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066376" comment="glibc-langpack-sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240156" comment="glibc-langpack-se is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066378" comment="glibc-langpack-se is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240157" comment="glibc-langpack-sgs is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066380" comment="glibc-langpack-sgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240158" comment="glibc-langpack-shn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066382" comment="glibc-langpack-shn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240159" comment="glibc-langpack-shs is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066384" comment="glibc-langpack-shs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240160" comment="glibc-langpack-si is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066386" comment="glibc-langpack-si is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240161" comment="glibc-langpack-sid is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066388" comment="glibc-langpack-sid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240162" comment="glibc-langpack-sk is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066390" comment="glibc-langpack-sk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240163" comment="glibc-langpack-sl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066392" comment="glibc-langpack-sl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240164" comment="glibc-langpack-sm is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066394" comment="glibc-langpack-sm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240165" comment="glibc-langpack-so is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066396" comment="glibc-langpack-so is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240166" comment="glibc-langpack-sq is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066398" comment="glibc-langpack-sq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240167" comment="glibc-langpack-sr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066400" comment="glibc-langpack-sr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240168" comment="glibc-langpack-ss is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066402" comment="glibc-langpack-ss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240169" comment="glibc-langpack-ssy is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066404" comment="glibc-langpack-ssy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240170" comment="glibc-langpack-st is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066406" comment="glibc-langpack-st is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240171" comment="glibc-langpack-su is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066408" comment="glibc-langpack-su is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240172" comment="glibc-langpack-sv is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066410" comment="glibc-langpack-sv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240173" comment="glibc-langpack-sw is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066412" comment="glibc-langpack-sw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240174" comment="glibc-langpack-syr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066414" comment="glibc-langpack-syr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240175" comment="glibc-langpack-szl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066416" comment="glibc-langpack-szl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240176" comment="glibc-langpack-ta is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066418" comment="glibc-langpack-ta is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240177" comment="glibc-langpack-tcy is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066420" comment="glibc-langpack-tcy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240178" comment="glibc-langpack-te is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066422" comment="glibc-langpack-te is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240179" comment="glibc-langpack-tg is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066424" comment="glibc-langpack-tg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240180" comment="glibc-langpack-th is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066426" comment="glibc-langpack-th is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240181" comment="glibc-langpack-the is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066428" comment="glibc-langpack-the is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240182" comment="glibc-langpack-ti is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066430" comment="glibc-langpack-ti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240183" comment="glibc-langpack-tig is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066432" comment="glibc-langpack-tig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240184" comment="glibc-langpack-tk is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066434" comment="glibc-langpack-tk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240185" comment="glibc-langpack-tl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066032" comment="glibc-langpack-tl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240186" comment="glibc-langpack-tn is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066034" comment="glibc-langpack-tn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240187" comment="glibc-langpack-to is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066036" comment="glibc-langpack-to is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240188" comment="glibc-langpack-tok is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066038" comment="glibc-langpack-tok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240189" comment="glibc-langpack-tpi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066040" comment="glibc-langpack-tpi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240190" comment="glibc-langpack-tr is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066042" comment="glibc-langpack-tr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240191" comment="glibc-langpack-ts is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066044" comment="glibc-langpack-ts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240192" comment="glibc-langpack-tt is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066046" comment="glibc-langpack-tt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240193" comment="glibc-langpack-ug is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066048" comment="glibc-langpack-ug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240194" comment="glibc-langpack-uk is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066050" comment="glibc-langpack-uk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240195" comment="glibc-langpack-unm is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066052" comment="glibc-langpack-unm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240196" comment="glibc-langpack-ur is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066054" comment="glibc-langpack-ur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240197" comment="glibc-langpack-uz is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066056" comment="glibc-langpack-uz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240198" comment="glibc-langpack-ve is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066058" comment="glibc-langpack-ve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240199" comment="glibc-langpack-vi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066060" comment="glibc-langpack-vi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240200" comment="glibc-langpack-wa is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066062" comment="glibc-langpack-wa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240201" comment="glibc-langpack-wae is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066064" comment="glibc-langpack-wae is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240202" comment="glibc-langpack-wal is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066066" comment="glibc-langpack-wal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240203" comment="glibc-langpack-wo is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066068" comment="glibc-langpack-wo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240204" comment="glibc-langpack-xh is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066070" comment="glibc-langpack-xh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240205" comment="glibc-langpack-yi is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066072" comment="glibc-langpack-yi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240206" comment="glibc-langpack-yo is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066074" comment="glibc-langpack-yo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240207" comment="glibc-langpack-yue is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066076" comment="glibc-langpack-yue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240208" comment="glibc-langpack-yuw is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066078" comment="glibc-langpack-yuw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240209" comment="glibc-langpack-zgh is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066080" comment="glibc-langpack-zgh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240210" comment="glibc-langpack-zh is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066082" comment="glibc-langpack-zh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240211" comment="glibc-langpack-zu is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066084" comment="glibc-langpack-zu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240212" comment="glibc-locale-source is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066086" comment="glibc-locale-source is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240213" comment="glibc-minimal-langpack is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066088" comment="glibc-minimal-langpack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240214" comment="glibc-utils is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066090" comment="glibc-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240215" comment="libnsl is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066092" comment="libnsl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240216" comment="glibc-benchtests is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066094" comment="glibc-benchtests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240217" comment="glibc-nss-devel is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066096" comment="glibc-nss-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240218" comment="glibc-static is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066436" comment="glibc-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240219" comment="nss_db is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066438" comment="nss_db is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240220" comment="nss_hesiod is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066440" comment="nss_hesiod is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513240221" comment="glibc-doc is earlier than 0:2.39-46.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066442" comment="glibc-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510677" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10677: golang security update (Moderate)</title>
        <reference ref_id="CVE-2025-4673" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4673"/>
        <reference ref_id="RHSA-2025:10677" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10677"/>
        <reference ref_id="ALSA-2025:10677" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10677.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * net/[http:](http:) Sensitive headers not cleared on cross-origin redirect in net/http (CVE-2025-4673)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-09"/>
          <updated date="2025-07-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2373305" id="2373305"></bugzilla>
          <cve public="20250611" href="https://access.redhat.com/security/cve/CVE-2025-4673" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N">CVE-2025-4673</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677001" comment="go-toolset is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677002" comment="golang is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677003" comment="golang-bin is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677004" comment="golang-race is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677006" comment="golang-src is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677007" comment="golang-docs is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677008" comment="golang-misc is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677009" comment="golang-tests is earlier than 0:1.24.4-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202512850" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:12850: opentelemetry-collector security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:12850" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:12850"/>
        <reference ref_id="ALSA-2025:12850" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-12850.html"/>
        <description>Collector with the supported components for a AlmaLinux build of OpenTelemetry  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-05"/>
          <updated date="2025-08-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850001" comment="opentelemetry-collector is earlier than 0:0.127.0-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850002" comment="opentelemetry-collector is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259896" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9896: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-21883" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21883"/>
        <reference ref_id="CVE-2025-21961" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21961"/>
        <reference ref_id="CVE-2025-22104" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22104"/>
        <reference ref_id="RHSA-2025:9896" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9896"/>
        <reference ref_id="ALSA-2025:9896" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9896.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ice: Fix deinitializing VF in error path (CVE-2025-21883)
  * kernel: eth: bnxt: fix truesize for mb-xdp-pass case (CVE-2025-21961)
  * kernel: ibmvnic: Use kernel helpers for hex dumps (CVE-2025-22104)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-30"/>
          <updated date="2025-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2355415" id="2355415"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356584" id="2356584"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360265" id="2360265"></bugzilla>
          <cve public="20250327" href="https://access.redhat.com/security/cve/CVE-2025-21883" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21883</cve>
          <cve public="20250401" href="https://access.redhat.com/security/cve/CVE-2025-21961" impact="Moderate" cwe="CWE-665" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21961</cve>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22104" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-22104</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896001" comment="rtla is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896003" comment="rv is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896005" comment="kernel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896007" comment="kernel-64k is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896009" comment="kernel-64k-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896011" comment="kernel-64k-debug is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896013" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896015" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896017" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896019" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896021" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896023" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896025" comment="kernel-64k-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896027" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896029" comment="kernel-64k-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896031" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896033" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896035" comment="kernel-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896037" comment="kernel-debug is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896039" comment="kernel-debug-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896041" comment="kernel-debug-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896043" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896045" comment="kernel-debug-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896047" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896049" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896051" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896053" comment="kernel-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896055" comment="kernel-devel-matched is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896057" comment="kernel-headers is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896059" comment="kernel-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896061" comment="kernel-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896063" comment="kernel-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896065" comment="kernel-rt is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896067" comment="kernel-rt-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896069" comment="kernel-rt-debug is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896071" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896073" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896075" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896077" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896079" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896081" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896083" comment="kernel-rt-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896085" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896087" comment="kernel-rt-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896089" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896091" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896093" comment="kernel-tools is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896095" comment="kernel-tools-libs is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896097" comment="kernel-uki-virt is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896099" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896101" comment="perf is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896103" comment="python3-perf is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896105" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896107" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896109" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896111" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896113" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896115" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896117" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896119" comment="kernel-rt-64k is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896121" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896123" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896125" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896127" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896129" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896131" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896133" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896135" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896137" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896139" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896141" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896143" comment="kernel-cross-headers is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896145" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896147" comment="libperf is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896149" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896151" comment="kernel-doc is earlier than 0:6.12.0-55.19.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260786" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0786: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-68285" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68285"/>
        <reference ref_id="RHSA-2026:0786" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0786"/>
        <reference ref_id="ALSA-2026:0786" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0786.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: libceph: fix potential use-after-free in have_mon_and_osd_map() (CVE-2025-68285)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-19"/>
          <updated date="2026-01-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2422801" id="2422801"></bugzilla>
          <cve public="20251216" href="https://access.redhat.com/security/cve/CVE-2025-68285" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68285</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786001" comment="kernel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786002" comment="kernel-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786003" comment="kernel-debug is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786004" comment="kernel-debug-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786011" comment="kernel-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786013" comment="kernel-headers is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786014" comment="kernel-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786015" comment="kernel-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786018" comment="kernel-rt is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786019" comment="kernel-rt-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786030" comment="kernel-tools is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786034" comment="perf is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786035" comment="python3-perf is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786036" comment="rtla is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786037" comment="rv is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786045" comment="kernel-64k is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786046" comment="kernel-64k-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786073" comment="libperf is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260786075" comment="kernel-doc is earlier than 0:6.12.0-124.28.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510635" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10635: gnome-remote-desktop security update (Moderate)</title>
        <reference ref_id="CVE-2025-5024" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5024"/>
        <reference ref_id="RHSA-2025:10635" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10635"/>
        <reference ref_id="ALSA-2025:10635" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10635.html"/>
        <description>GNOME Remote Desktop is a remote desktop and screen sharing service for the GNOME desktop environment.  

Security Fix(es):  

  * gnome-remote-desktop: Uncontrolled Resource Consumption due to Malformed RDP PDUs (CVE-2025-5024)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-08"/>
          <updated date="2025-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367717" id="2367717"></bugzilla>
          <cve public="20250521" href="https://access.redhat.com/security/cve/CVE-2025-5024" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:H">CVE-2025-5024</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202510635001" comment="gnome-remote-desktop is earlier than 0:47.3-2.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202510635002" comment="gnome-remote-desktop is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263476" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3476: udisks2 security update (Important)</title>
        <reference ref_id="CVE-2026-26103" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26103"/>
        <reference ref_id="CVE-2026-26104" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26104"/>
        <reference ref_id="RHSA-2026:3476" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3476"/>
        <reference ref_id="ALSA-2026:3476" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3476.html"/>
        <description>The Udisks project provides a daemon, tools, and libraries to access and manipulate disks, storage devices, and technologies.  

Security Fix(es):  

  * udisks: Missing Authorization Check Allows Unprivileged Users to Back Up LUKS Headers via udisks D-Bus API (CVE-2026-26104)
  * udisks: Missing Authorization Check Allows Unprivileged Users to Restore LUKS Headers via udisks D-Bus API (CVE-2026-26103)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-02"/>
          <updated date="2026-03-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2433717" id="2433717"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2433719" id="2433719"></bugzilla>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-26103" impact="Important" cwe="CWE-862" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H">CVE-2026-26103</cve>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-26104" impact="Moderate" cwe="CWE-862" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N">CVE-2026-26104</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263476001" comment="libudisks2 is earlier than 0:2.10.90-6.el10_1.1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020002" comment="libudisks2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263476002" comment="udisks2 is earlier than 0:2.10.90-6.el10_1.1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020004" comment="udisks2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263476003" comment="udisks2-iscsi is earlier than 0:2.10.90-6.el10_1.1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020006" comment="udisks2-iscsi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263476004" comment="udisks2-lsm is earlier than 0:2.10.90-6.el10_1.1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020008" comment="udisks2-lsm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263476005" comment="udisks2-lvm2 is earlier than 0:2.10.90-6.el10_1.1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020010" comment="udisks2-lvm2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263476006" comment="libudisks2-devel is earlier than 0:2.10.90-6.el10_1.1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020012" comment="libudisks2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516154" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16154: grub2 security update (Moderate)</title>
        <reference ref_id="CVE-2024-45776" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-45776"/>
        <reference ref_id="CVE-2024-45781" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-45781"/>
        <reference ref_id="CVE-2025-0622" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-0622"/>
        <reference ref_id="CVE-2025-0677" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-0677"/>
        <reference ref_id="CVE-2025-1118" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1118"/>
        <reference ref_id="RHSA-2025:16154" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16154"/>
        <reference ref_id="ALSA-2025:16154" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16154.html"/>
        <description>The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices.  

Security Fix(es):  

  * grub2: grub-core/gettext: Integer overflow leads to Heap OOB Write and Read. (CVE-2024-45776)
  * grub2: fs/ufs: OOB write in the heap (CVE-2024-45781)
  * grub2: command/gpg: Use-after-free due to hooks not being removed on module unload (CVE-2025-0622)
  * grub2: UFS: Integer overflow may lead to heap based out-of-bounds write when handling symlinks (CVE-2025-0677)
  * grub2: commands/dump: The dump command is not in lockdown when secure boot is enabled (CVE-2025-1118)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-18"/>
          <updated date="2025-09-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2339182" id="2339182"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2345857" id="2345857"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2345865" id="2345865"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2346116" id="2346116"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2346137" id="2346137"></bugzilla>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2024-45776" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2024-45776</cve>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2024-45781" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2024-45781</cve>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2025-0622" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-0622</cve>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2025-0677" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-0677</cve>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2025-1118" impact="Moderate" cwe="CWE-501" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N">CVE-2025-1118</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154001" comment="grub2-efi-x64 is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154002" comment="grub2-efi-x64 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154003" comment="grub2-efi-x64-cdboot is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154004" comment="grub2-efi-x64-cdboot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154005" comment="grub2-pc is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154006" comment="grub2-pc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154007" comment="grub2-tools is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154008" comment="grub2-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154009" comment="grub2-tools-efi is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154010" comment="grub2-tools-efi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154011" comment="grub2-tools-extra is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154012" comment="grub2-tools-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154013" comment="grub2-tools-minimal is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154014" comment="grub2-tools-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154015" comment="grub2-ppc64le is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154016" comment="grub2-ppc64le is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154017" comment="grub2-efi-aa64 is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154018" comment="grub2-efi-aa64 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154019" comment="grub2-efi-aa64-cdboot is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154020" comment="grub2-efi-aa64-cdboot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154021" comment="grub2-common is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154022" comment="grub2-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154023" comment="grub2-efi-aa64-modules is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154024" comment="grub2-efi-aa64-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154025" comment="grub2-efi-x64-modules is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154026" comment="grub2-efi-x64-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154027" comment="grub2-pc-modules is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154028" comment="grub2-pc-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154029" comment="grub2-ppc64le-modules is earlier than 1:2.12-15.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154030" comment="grub2-ppc64le-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510630" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10630: libxml2 security update (Important)</title>
        <reference ref_id="CVE-2025-6021" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6021"/>
        <reference ref_id="CVE-2025-49794" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49794"/>
        <reference ref_id="CVE-2025-49795" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49795"/>
        <reference ref_id="CVE-2025-49796" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49796"/>
        <reference ref_id="RHSA-2025:10630" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10630"/>
        <reference ref_id="ALSA-2025:10630" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10630.html"/>
        <description>The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

  * libxml: Heap use after free (UAF) leads to Denial of service (DoS) (CVE-2025-49794)
  * libxml: Null pointer dereference leads to Denial of service (DoS) (CVE-2025-49795)
  * libxml: Type confusion leads to Denial of service (DoS) (CVE-2025-49796)
  * libxml2: Integer Overflow in xmlBuildQName() Leads to Stack Buffer Overflow in libxml2 (CVE-2025-6021)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-08"/>
          <updated date="2025-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2372373" id="2372373"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2372379" id="2372379"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2372385" id="2372385"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2372406" id="2372406"></bugzilla>
          <cve public="20250612" href="https://access.redhat.com/security/cve/CVE-2025-6021" impact="Moderate" cwe="(CWE-190|CWE-121)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-6021</cve>
          <cve public="20250610" href="https://access.redhat.com/security/cve/CVE-2025-49794" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVE-2025-49794</cve>
          <cve public="20250611" href="https://access.redhat.com/security/cve/CVE-2025-49795" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-49795</cve>
          <cve public="20250611" href="https://access.redhat.com/security/cve/CVE-2025-49796" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVE-2025-49796</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630001" comment="libxml2 is earlier than 0:2.12.5-7.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630002" comment="libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630003" comment="libxml2-devel is earlier than 0:2.12.5-7.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630004" comment="libxml2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630005" comment="python3-libxml2 is earlier than 0:2.12.5-7.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630006" comment="python3-libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630007" comment="libxml2-static is earlier than 0:2.12.5-7.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630008" comment="libxml2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202512662" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:12662: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-21727" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21727"/>
        <reference ref_id="CVE-2025-21928" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21928"/>
        <reference ref_id="CVE-2025-21929" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21929"/>
        <reference ref_id="CVE-2025-22020" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22020"/>
        <reference ref_id="CVE-2025-22085" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22085"/>
        <reference ref_id="CVE-2025-22113" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22113"/>
        <reference ref_id="CVE-2025-37890" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37890"/>
        <reference ref_id="CVE-2025-38052" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38052"/>
        <reference ref_id="CVE-2025-38086" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38086"/>
        <reference ref_id="CVE-2025-38087" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38087"/>
        <reference ref_id="CVE-2025-38264" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38264"/>
        <reference ref_id="RHSA-2025:12662" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:12662"/>
        <reference ref_id="ALSA-2025:12662" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-12662.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: padata: fix UAF in padata_reorder (CVE-2025-21727)
  * kernel: HID: intel-ish-hid: Fix use-after-free issue in ishtp_hid_remove() (CVE-2025-21928)
  * kernel: HID: intel-ish-hid: Fix use-after-free issue in hid_ishtp_cl_remove() (CVE-2025-21929)
  * kernel: memstick: rtsx_usb_ms: Fix slab-use-after-free in rtsx_usb_ms_drv_remove (CVE-2025-22020)
  * kernel: ext4: avoid journaling sb update on error if journal is destroying (CVE-2025-22113)
  * kernel: RDMA/core: Fix use-after-free when rename device name (CVE-2025-22085)
  * kernel: net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc (CVE-2025-37890)
  * kernel: net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done (CVE-2025-38052)
  * kernel: net: ch9200: fix uninitialised access during mii_nway_restart (CVE-2025-38086)
  * kernel: net/sched: fix use-after-free in taprio_dev_notifier (CVE-2025-38087)
  * kernel: nvme-tcp: sanitize request list handling (CVE-2025-38264)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-04"/>
          <updated date="2025-08-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2348516" id="2348516"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356592" id="2356592"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356594" id="2356594"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360099" id="2360099"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360212" id="2360212"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360219" id="2360219"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2366848" id="2366848"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2373380" id="2373380"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2375305" id="2375305"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2375531" id="2375531"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2378996" id="2378996"></bugzilla>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21727" impact="Moderate" cwe="CWE-820" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21727</cve>
          <cve public="20250401" href="https://access.redhat.com/security/cve/CVE-2025-21928" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21928</cve>
          <cve public="20250401" href="https://access.redhat.com/security/cve/CVE-2025-21929" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21929</cve>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22020" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22020</cve>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22085" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22085</cve>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22113" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-22113</cve>
          <cve public="20250516" href="https://access.redhat.com/security/cve/CVE-2025-37890" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-37890</cve>
          <cve public="20250618" href="https://access.redhat.com/security/cve/CVE-2025-38052" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38052</cve>
          <cve public="20250628" href="https://access.redhat.com/security/cve/CVE-2025-38086" impact="Moderate" cwe="CWE-908" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38086</cve>
          <cve public="20250630" href="https://access.redhat.com/security/cve/CVE-2025-38087" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38087</cve>
          <cve public="20250709" href="https://access.redhat.com/security/cve/CVE-2025-38264" impact="Important" cwe="CWE-672" cvss3="CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38264</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662001" comment="kernel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662002" comment="kernel-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662003" comment="kernel-debug is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662004" comment="kernel-debug-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662011" comment="kernel-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662013" comment="kernel-headers is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662014" comment="kernel-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662015" comment="kernel-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662017" comment="kernel-rt is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662018" comment="kernel-rt-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662031" comment="kernel-tools is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662035" comment="perf is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662036" comment="python3-perf is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662037" comment="rtla is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662038" comment="rv is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662046" comment="kernel-64k is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662047" comment="kernel-64k-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662074" comment="libperf is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512662076" comment="kernel-doc is earlier than 0:6.12.0-55.25.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516157" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16157: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-10527" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10527"/>
        <reference ref_id="CVE-2025-10528" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10528"/>
        <reference ref_id="CVE-2025-10529" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10529"/>
        <reference ref_id="CVE-2025-10532" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10532"/>
        <reference ref_id="CVE-2025-10533" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10533"/>
        <reference ref_id="CVE-2025-10536" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10536"/>
        <reference ref_id="CVE-2025-10537" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10537"/>
        <reference ref_id="RHSA-2025:16157" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16157"/>
        <reference ref_id="ALSA-2025:16157" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16157.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Sandbox escape due to use-after-free in the Graphics: Canvas2D component (CVE-2025-10527)
  * firefox: thunderbird: Incorrect boundary conditions in the JavaScript: GC component (CVE-2025-10532)
  * firefox: thunderbird: Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component (CVE-2025-10528)
  * firefox: thunderbird: Same-origin policy bypass in the Layout component (CVE-2025-10529)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143 (CVE-2025-10537)
  * firefox: thunderbird: Information disclosure in the Networking: Cache component (CVE-2025-10536)
  * firefox: thunderbird: Integer overflow in the SVG component (CVE-2025-10533)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-18"/>
          <updated date="2025-09-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2395745" id="2395745"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395754" id="2395754"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395755" id="2395755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395756" id="2395756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395759" id="2395759"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395764" id="2395764"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395766" id="2395766"></bugzilla>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10527" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-10527</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10528" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-10528</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10529" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-10529</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10532" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-10532</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10533" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-10533</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10536" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-10536</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10537" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-10537</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202516157001" comment="thunderbird is earlier than 0:140.3.0-1.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202513429" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:13429: libxml2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-32414" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32414"/>
        <reference ref_id="CVE-2025-32415" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32415"/>
        <reference ref_id="RHSA-2025:13429" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:13429"/>
        <reference ref_id="ALSA-2025:13429" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-13429.html"/>
        <description>The libxml2 library is a development toolbox providing the implementation of various XML standards.  

The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

The libxml2 library is a development toolbox providing the implementation of various XML standards.  

The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

  * libxml2: Out-of-Bounds Read in libxml2 (CVE-2025-32414)


The libxml2 library is a development toolbox providing the implementation of various XML standards.  

The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

The libxml2 library is a development toolbox providing the implementation of various XML standards.  

The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

  * libxml2: Out-of-Bounds Read in libxml2 (CVE-2025-32414)
  * libxml2: Out-of-bounds Read in xmlSchemaIDCFillNodeTables (CVE-2025-32415)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-07"/>
          <updated date="2025-08-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358121" id="2358121"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360768" id="2360768"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-32414" impact="Moderate" cwe="CWE-393" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L">CVE-2025-32414</cve>
          <cve public="20250417" href="https://access.redhat.com/security/cve/CVE-2025-32415" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-32415</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513429001" comment="libxml2 is earlier than 0:2.12.5-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630002" comment="libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513429002" comment="libxml2-devel is earlier than 0:2.12.5-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630004" comment="libxml2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513429003" comment="python3-libxml2 is earlier than 0:2.12.5-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630006" comment="python3-libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513429004" comment="libxml2-static is earlier than 0:2.12.5-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630008" comment="libxml2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510371" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10371: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-21759" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21759"/>
        <reference ref_id="CVE-2025-21991" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21991"/>
        <reference ref_id="CVE-2025-37799" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37799"/>
        <reference ref_id="RHSA-2025:10371" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10371"/>
        <reference ref_id="ALSA-2025:10371" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10371.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ipv6: mcast: extend RCU protection in igmp6_send() (CVE-2025-21759)
  * kernel: x86/microcode/AMD: Fix out-of-bounds on systems with CPU-less NUMA nodes (CVE-2025-21991)
  * kernel: vmxnet3: Fix malformed packet sizing in vmxnet3_process_xdp (CVE-2025-37799)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-07"/>
          <updated date="2025-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2348596" id="2348596"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356917" id="2356917"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2363876" id="2363876"></bugzilla>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21759" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21759</cve>
          <cve public="20250402" href="https://access.redhat.com/security/cve/CVE-2025-21991" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21991</cve>
          <cve public="20250503" href="https://access.redhat.com/security/cve/CVE-2025-37799" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N">CVE-2025-37799</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371001" comment="kernel-rt-debug is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371002" comment="kernel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371003" comment="kernel-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371004" comment="kernel-debug is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371005" comment="kernel-debug-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371006" comment="kernel-debug-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371007" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371008" comment="kernel-debug-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371009" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371010" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371011" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371012" comment="kernel-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371013" comment="kernel-devel-matched is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371014" comment="kernel-headers is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371015" comment="kernel-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371016" comment="kernel-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371017" comment="kernel-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371018" comment="kernel-rt is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371019" comment="kernel-rt-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371031" comment="kernel-tools is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371035" comment="perf is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371036" comment="python3-perf is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371037" comment="rtla is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371038" comment="rv is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371046" comment="kernel-64k is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371047" comment="kernel-64k-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371074" comment="libperf is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510371076" comment="kernel-doc is earlier than 0:6.12.0-55.20.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516441" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16441: avahi security update (Moderate)</title>
        <reference ref_id="CVE-2024-52615" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-52615"/>
        <reference ref_id="RHSA-2025:16441" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16441"/>
        <reference ref_id="ALSA-2025:16441" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16441.html"/>
        <description>Avahi is an implementation of the DNS Service Discovery and Multicast DNS specifications for Zero Configuration Networking. It facilitates service discovery on a local network. Avahi and Avahi-aware applications allow you to plug your computer into a network and, with no configuration, view other people to chat with, view printers to print with, and find shared files on other computers.  

Security Fix(es):  

  * avahi: Avahi Wide-Area DNS Uses Constant Source Port (CVE-2024-52615)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-23"/>
          <updated date="2025-09-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2326418" id="2326418"></bugzilla>
          <cve public="20241115" href="https://access.redhat.com/security/cve/CVE-2024-52615" impact="Moderate" cwe="CWE-330" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2024-52615</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441001" comment="avahi is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441002" comment="avahi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441003" comment="avahi-devel is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441004" comment="avahi-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441005" comment="avahi-glib is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441006" comment="avahi-glib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441007" comment="avahi-libs is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441008" comment="avahi-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441009" comment="avahi-tools is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441010" comment="avahi-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441011" comment="avahi-compat-howl is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441012" comment="avahi-compat-howl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441013" comment="avahi-compat-howl-devel is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441014" comment="avahi-compat-howl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441015" comment="avahi-compat-libdns_sd is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441016" comment="avahi-compat-libdns_sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441017" comment="avahi-compat-libdns_sd-devel is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441018" comment="avahi-compat-libdns_sd-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441019" comment="avahi-glib-devel is earlier than 0:0.9~rc2-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516441020" comment="avahi-glib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516109" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16109: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-10527" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10527"/>
        <reference ref_id="CVE-2025-10528" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10528"/>
        <reference ref_id="CVE-2025-10529" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10529"/>
        <reference ref_id="CVE-2025-10532" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10532"/>
        <reference ref_id="CVE-2025-10533" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10533"/>
        <reference ref_id="CVE-2025-10536" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10536"/>
        <reference ref_id="CVE-2025-10537" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10537"/>
        <reference ref_id="RHSA-2025:16109" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16109"/>
        <reference ref_id="ALSA-2025:16109" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16109.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Sandbox escape due to use-after-free in the Graphics: Canvas2D component (CVE-2025-10527)
  * firefox: thunderbird: Incorrect boundary conditions in the JavaScript: GC component (CVE-2025-10532)
  * firefox: thunderbird: Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component (CVE-2025-10528)
  * firefox: thunderbird: Same-origin policy bypass in the Layout component (CVE-2025-10529)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143 (CVE-2025-10537)
  * firefox: thunderbird: Information disclosure in the Networking: Cache component (CVE-2025-10536)
  * firefox: thunderbird: Integer overflow in the SVG component (CVE-2025-10533)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-17"/>
          <updated date="2025-09-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2395745" id="2395745"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395754" id="2395754"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395755" id="2395755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395756" id="2395756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395759" id="2395759"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395764" id="2395764"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395766" id="2395766"></bugzilla>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10527" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-10527</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10528" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-10528</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10529" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-10529</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10532" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-10532</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10533" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-10533</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10536" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-10536</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-10537" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-10537</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202516109001" comment="firefox is earlier than 0:140.3.0-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202513604" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:13604: python-requests security update (Moderate)</title>
        <reference ref_id="CVE-2024-47081" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-47081"/>
        <reference ref_id="RHSA-2025:13604" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:13604"/>
        <reference ref_id="ALSA-2025:13604" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-13604.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * requests: Requests vulnerable to .netrc credentials leak via malicious URLs (CVE-2024-47081)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-11"/>
          <updated date="2025-08-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2371272" id="2371272"></bugzilla>
          <cve public="20250609" href="https://access.redhat.com/security/cve/CVE-2024-47081" impact="Moderate" cwe="CWE-522" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2024-47081</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202513604001" comment="python3-requests is earlier than 0:2.32.4-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202513604002" comment="python3-requests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257484" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7484: gvisor-tap-vsock security update (Important)</title>
        <reference ref_id="CVE-2025-22869" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22869"/>
        <reference ref_id="RHSA-2025:7484" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7484"/>
        <reference ref_id="ALSA-2025:7484" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7484.html"/>
        <description>A replacement for libslirp and VPNKit, written in pure Go. It is based on the network stack of gVisor. Compared to libslirp, gvisor-tap-vsock brings a configurable DNS server and dynamic port forwarding.  

Security Fix(es):  

  * golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh (CVE-2025-22869)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2348367" id="2348367"></bugzilla>
          <cve public="20250226" href="https://access.redhat.com/security/cve/CVE-2025-22869" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-22869</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257484001" comment="gvisor-tap-vsock is earlier than 6:0.8.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259151002" comment="gvisor-tap-vsock is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257484002" comment="gvisor-tap-vsock-gvforwarder is earlier than 6:0.8.5-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259151004" comment="gvisor-tap-vsock-gvforwarder is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511066" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11066: glibc security update (Moderate)</title>
        <reference ref_id="CVE-2025-5702" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5702"/>
        <reference ref_id="RHSA-2025:11066" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11066"/>
        <reference ref_id="ALSA-2025:11066" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11066.html"/>
        <description>The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.  

Security Fix(es):  

  * glibc: Vector register overwrite bug in glibc (CVE-2025-5702)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-15"/>
          <updated date="2025-07-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2370472" id="2370472"></bugzilla>
          <cve public="20250605" href="https://access.redhat.com/security/cve/CVE-2025-5702" impact="Moderate" cwe="CWE-404" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-5702</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066001" comment="glibc is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066002" comment="glibc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066003" comment="glibc-all-langpacks is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066004" comment="glibc-all-langpacks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066005" comment="glibc-common is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066006" comment="glibc-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066007" comment="glibc-devel is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066008" comment="glibc-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066009" comment="glibc-gconv-extra is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066010" comment="glibc-gconv-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066011" comment="glibc-langpack-aa is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066012" comment="glibc-langpack-aa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066013" comment="glibc-langpack-af is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066014" comment="glibc-langpack-af is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066015" comment="glibc-langpack-agr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066016" comment="glibc-langpack-agr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066017" comment="glibc-langpack-ak is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066018" comment="glibc-langpack-ak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066019" comment="glibc-langpack-am is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066020" comment="glibc-langpack-am is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066021" comment="glibc-langpack-an is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066022" comment="glibc-langpack-an is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066023" comment="glibc-langpack-anp is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066024" comment="glibc-langpack-anp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066025" comment="glibc-langpack-ar is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066026" comment="glibc-langpack-ar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066027" comment="glibc-langpack-as is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066028" comment="glibc-langpack-as is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066029" comment="glibc-langpack-ast is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066030" comment="glibc-langpack-ast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066031" comment="glibc-langpack-tl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066032" comment="glibc-langpack-tl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066033" comment="glibc-langpack-tn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066034" comment="glibc-langpack-tn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066035" comment="glibc-langpack-to is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066036" comment="glibc-langpack-to is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066037" comment="glibc-langpack-tok is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066038" comment="glibc-langpack-tok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066039" comment="glibc-langpack-tpi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066040" comment="glibc-langpack-tpi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066041" comment="glibc-langpack-tr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066042" comment="glibc-langpack-tr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066043" comment="glibc-langpack-ts is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066044" comment="glibc-langpack-ts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066045" comment="glibc-langpack-tt is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066046" comment="glibc-langpack-tt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066047" comment="glibc-langpack-ug is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066048" comment="glibc-langpack-ug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066049" comment="glibc-langpack-uk is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066050" comment="glibc-langpack-uk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066051" comment="glibc-langpack-unm is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066052" comment="glibc-langpack-unm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066053" comment="glibc-langpack-ur is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066054" comment="glibc-langpack-ur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066055" comment="glibc-langpack-uz is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066056" comment="glibc-langpack-uz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066057" comment="glibc-langpack-ve is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066058" comment="glibc-langpack-ve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066059" comment="glibc-langpack-vi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066060" comment="glibc-langpack-vi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066061" comment="glibc-langpack-wa is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066062" comment="glibc-langpack-wa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066063" comment="glibc-langpack-wae is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066064" comment="glibc-langpack-wae is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066065" comment="glibc-langpack-wal is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066066" comment="glibc-langpack-wal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066067" comment="glibc-langpack-wo is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066068" comment="glibc-langpack-wo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066069" comment="glibc-langpack-xh is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066070" comment="glibc-langpack-xh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066071" comment="glibc-langpack-yi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066072" comment="glibc-langpack-yi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066073" comment="glibc-langpack-yo is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066074" comment="glibc-langpack-yo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066075" comment="glibc-langpack-yue is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066076" comment="glibc-langpack-yue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066077" comment="glibc-langpack-yuw is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066078" comment="glibc-langpack-yuw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066079" comment="glibc-langpack-zgh is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066080" comment="glibc-langpack-zgh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066081" comment="glibc-langpack-zh is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066082" comment="glibc-langpack-zh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066083" comment="glibc-langpack-zu is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066084" comment="glibc-langpack-zu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066085" comment="glibc-locale-source is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066086" comment="glibc-locale-source is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066087" comment="glibc-minimal-langpack is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066088" comment="glibc-minimal-langpack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066089" comment="glibc-utils is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066090" comment="glibc-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066091" comment="libnsl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066092" comment="libnsl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066093" comment="glibc-benchtests is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066094" comment="glibc-benchtests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066095" comment="glibc-nss-devel is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066096" comment="glibc-nss-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066097" comment="glibc-langpack-ayc is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066098" comment="glibc-langpack-ayc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066099" comment="glibc-langpack-az is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066100" comment="glibc-langpack-az is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066101" comment="glibc-langpack-be is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066102" comment="glibc-langpack-be is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066103" comment="glibc-langpack-bem is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066104" comment="glibc-langpack-bem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066105" comment="glibc-langpack-ber is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066106" comment="glibc-langpack-ber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066107" comment="glibc-langpack-bg is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066108" comment="glibc-langpack-bg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066109" comment="glibc-langpack-bhb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066110" comment="glibc-langpack-bhb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066111" comment="glibc-langpack-bho is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066112" comment="glibc-langpack-bho is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066113" comment="glibc-langpack-bi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066114" comment="glibc-langpack-bi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066115" comment="glibc-langpack-bn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066116" comment="glibc-langpack-bn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066117" comment="glibc-langpack-bo is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066118" comment="glibc-langpack-bo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066119" comment="glibc-langpack-br is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066120" comment="glibc-langpack-br is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066121" comment="glibc-langpack-brx is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066122" comment="glibc-langpack-brx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066123" comment="glibc-langpack-bs is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066124" comment="glibc-langpack-bs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066125" comment="glibc-langpack-byn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066126" comment="glibc-langpack-byn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066127" comment="glibc-langpack-ca is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066128" comment="glibc-langpack-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066129" comment="glibc-langpack-ce is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066130" comment="glibc-langpack-ce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066131" comment="glibc-langpack-chr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066132" comment="glibc-langpack-chr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066133" comment="glibc-langpack-ckb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066134" comment="glibc-langpack-ckb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066135" comment="glibc-langpack-cmn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066136" comment="glibc-langpack-cmn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066137" comment="glibc-langpack-crh is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066138" comment="glibc-langpack-crh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066139" comment="glibc-langpack-cs is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066140" comment="glibc-langpack-cs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066141" comment="glibc-langpack-csb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066142" comment="glibc-langpack-csb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066143" comment="glibc-langpack-cv is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066144" comment="glibc-langpack-cv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066145" comment="glibc-langpack-cy is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066146" comment="glibc-langpack-cy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066147" comment="glibc-langpack-da is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066148" comment="glibc-langpack-da is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066149" comment="glibc-langpack-de is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066150" comment="glibc-langpack-de is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066151" comment="glibc-langpack-doi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066152" comment="glibc-langpack-doi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066153" comment="glibc-langpack-dsb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066154" comment="glibc-langpack-dsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066155" comment="glibc-langpack-dv is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066156" comment="glibc-langpack-dv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066157" comment="glibc-langpack-dz is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066158" comment="glibc-langpack-dz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066159" comment="glibc-langpack-el is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066160" comment="glibc-langpack-el is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066161" comment="glibc-langpack-en is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066162" comment="glibc-langpack-en is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066163" comment="glibc-langpack-eo is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066164" comment="glibc-langpack-eo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066165" comment="glibc-langpack-es is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066166" comment="glibc-langpack-es is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066167" comment="glibc-langpack-et is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066168" comment="glibc-langpack-et is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066169" comment="glibc-langpack-eu is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066170" comment="glibc-langpack-eu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066171" comment="glibc-langpack-fa is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066172" comment="glibc-langpack-fa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066173" comment="glibc-langpack-ff is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066174" comment="glibc-langpack-ff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066175" comment="glibc-langpack-fi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066176" comment="glibc-langpack-fi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066177" comment="glibc-langpack-fil is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066178" comment="glibc-langpack-fil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066179" comment="glibc-langpack-fo is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066180" comment="glibc-langpack-fo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066181" comment="glibc-langpack-fr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066182" comment="glibc-langpack-fr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066183" comment="glibc-langpack-fur is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066184" comment="glibc-langpack-fur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066185" comment="glibc-langpack-fy is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066186" comment="glibc-langpack-fy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066187" comment="glibc-langpack-ga is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066188" comment="glibc-langpack-ga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066189" comment="glibc-langpack-gbm is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066190" comment="glibc-langpack-gbm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066191" comment="glibc-langpack-gd is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066192" comment="glibc-langpack-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066193" comment="glibc-langpack-gez is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066194" comment="glibc-langpack-gez is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066195" comment="glibc-langpack-gl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066196" comment="glibc-langpack-gl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066197" comment="glibc-langpack-gu is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066198" comment="glibc-langpack-gu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066199" comment="glibc-langpack-gv is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066200" comment="glibc-langpack-gv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066201" comment="glibc-langpack-ha is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066202" comment="glibc-langpack-ha is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066203" comment="glibc-langpack-hak is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066204" comment="glibc-langpack-hak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066205" comment="glibc-langpack-he is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066206" comment="glibc-langpack-he is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066207" comment="glibc-langpack-hi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066208" comment="glibc-langpack-hi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066209" comment="glibc-langpack-hif is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066210" comment="glibc-langpack-hif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066211" comment="glibc-langpack-hne is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066212" comment="glibc-langpack-hne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066213" comment="glibc-langpack-hr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066214" comment="glibc-langpack-hr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066215" comment="glibc-langpack-hsb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066216" comment="glibc-langpack-hsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066217" comment="glibc-langpack-ht is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066218" comment="glibc-langpack-ht is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066219" comment="glibc-langpack-hu is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066220" comment="glibc-langpack-hu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066221" comment="glibc-langpack-hy is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066222" comment="glibc-langpack-hy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066223" comment="glibc-langpack-ia is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066224" comment="glibc-langpack-ia is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066225" comment="glibc-langpack-id is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066226" comment="glibc-langpack-id is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066227" comment="glibc-langpack-ig is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066228" comment="glibc-langpack-ig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066229" comment="glibc-langpack-ik is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066230" comment="glibc-langpack-ik is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066231" comment="glibc-langpack-is is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066232" comment="glibc-langpack-is is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066233" comment="glibc-langpack-it is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066234" comment="glibc-langpack-it is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066235" comment="glibc-langpack-iu is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066236" comment="glibc-langpack-iu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066237" comment="glibc-langpack-ja is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066238" comment="glibc-langpack-ja is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066239" comment="glibc-langpack-ka is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066240" comment="glibc-langpack-ka is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066241" comment="glibc-langpack-kab is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066242" comment="glibc-langpack-kab is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066243" comment="glibc-langpack-kk is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066244" comment="glibc-langpack-kk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066245" comment="glibc-langpack-kl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066246" comment="glibc-langpack-kl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066247" comment="glibc-langpack-km is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066248" comment="glibc-langpack-km is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066249" comment="glibc-langpack-kn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066250" comment="glibc-langpack-kn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066251" comment="glibc-langpack-ko is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066252" comment="glibc-langpack-ko is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066253" comment="glibc-langpack-kok is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066254" comment="glibc-langpack-kok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066255" comment="glibc-langpack-ks is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066256" comment="glibc-langpack-ks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066257" comment="glibc-langpack-ku is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066258" comment="glibc-langpack-ku is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066259" comment="glibc-langpack-kv is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066260" comment="glibc-langpack-kv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066261" comment="glibc-langpack-kw is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066262" comment="glibc-langpack-kw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066263" comment="glibc-langpack-ky is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066264" comment="glibc-langpack-ky is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066265" comment="glibc-langpack-lb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066266" comment="glibc-langpack-lb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066267" comment="glibc-langpack-lg is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066268" comment="glibc-langpack-lg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066269" comment="glibc-langpack-li is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066270" comment="glibc-langpack-li is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066271" comment="glibc-langpack-lij is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066272" comment="glibc-langpack-lij is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066273" comment="glibc-langpack-ln is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066274" comment="glibc-langpack-ln is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066275" comment="glibc-langpack-lo is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066276" comment="glibc-langpack-lo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066277" comment="glibc-langpack-lt is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066278" comment="glibc-langpack-lt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066279" comment="glibc-langpack-lv is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066280" comment="glibc-langpack-lv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066281" comment="glibc-langpack-lzh is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066282" comment="glibc-langpack-lzh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066283" comment="glibc-langpack-mag is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066284" comment="glibc-langpack-mag is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066285" comment="glibc-langpack-mai is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066286" comment="glibc-langpack-mai is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066287" comment="glibc-langpack-mfe is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066288" comment="glibc-langpack-mfe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066289" comment="glibc-langpack-mg is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066290" comment="glibc-langpack-mg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066291" comment="glibc-langpack-mhr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066292" comment="glibc-langpack-mhr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066293" comment="glibc-langpack-mi is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066294" comment="glibc-langpack-mi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066295" comment="glibc-langpack-miq is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066296" comment="glibc-langpack-miq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066297" comment="glibc-langpack-mjw is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066298" comment="glibc-langpack-mjw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066299" comment="glibc-langpack-mk is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066300" comment="glibc-langpack-mk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066301" comment="glibc-langpack-ml is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066302" comment="glibc-langpack-ml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066303" comment="glibc-langpack-mn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066304" comment="glibc-langpack-mn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066305" comment="glibc-langpack-mni is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066306" comment="glibc-langpack-mni is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066307" comment="glibc-langpack-mnw is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066308" comment="glibc-langpack-mnw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066309" comment="glibc-langpack-mr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066310" comment="glibc-langpack-mr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066311" comment="glibc-langpack-ms is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066312" comment="glibc-langpack-ms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066313" comment="glibc-langpack-mt is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066314" comment="glibc-langpack-mt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066315" comment="glibc-langpack-my is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066316" comment="glibc-langpack-my is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066317" comment="glibc-langpack-nan is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066318" comment="glibc-langpack-nan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066319" comment="glibc-langpack-nb is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066320" comment="glibc-langpack-nb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066321" comment="glibc-langpack-nds is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066322" comment="glibc-langpack-nds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066323" comment="glibc-langpack-ne is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066324" comment="glibc-langpack-ne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066325" comment="glibc-langpack-nhn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066326" comment="glibc-langpack-nhn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066327" comment="glibc-langpack-niu is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066328" comment="glibc-langpack-niu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066329" comment="glibc-langpack-nl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066330" comment="glibc-langpack-nl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066331" comment="glibc-langpack-nn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066332" comment="glibc-langpack-nn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066333" comment="glibc-langpack-nr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066334" comment="glibc-langpack-nr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066335" comment="glibc-langpack-nso is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066336" comment="glibc-langpack-nso is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066337" comment="glibc-langpack-oc is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066338" comment="glibc-langpack-oc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066339" comment="glibc-langpack-om is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066340" comment="glibc-langpack-om is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066341" comment="glibc-langpack-or is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066342" comment="glibc-langpack-or is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066343" comment="glibc-langpack-os is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066344" comment="glibc-langpack-os is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066345" comment="glibc-langpack-pa is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066346" comment="glibc-langpack-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066347" comment="glibc-langpack-pap is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066348" comment="glibc-langpack-pap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066349" comment="glibc-langpack-pl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066350" comment="glibc-langpack-pl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066351" comment="glibc-langpack-ps is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066352" comment="glibc-langpack-ps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066353" comment="glibc-langpack-pt is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066354" comment="glibc-langpack-pt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066355" comment="glibc-langpack-quz is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066356" comment="glibc-langpack-quz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066357" comment="glibc-langpack-raj is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066358" comment="glibc-langpack-raj is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066359" comment="glibc-langpack-rif is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066360" comment="glibc-langpack-rif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066361" comment="glibc-langpack-ro is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066362" comment="glibc-langpack-ro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066363" comment="glibc-langpack-ru is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066364" comment="glibc-langpack-ru is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066365" comment="glibc-langpack-rw is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066366" comment="glibc-langpack-rw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066367" comment="glibc-langpack-sa is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066368" comment="glibc-langpack-sa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066369" comment="glibc-langpack-sah is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066370" comment="glibc-langpack-sah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066371" comment="glibc-langpack-sat is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066372" comment="glibc-langpack-sat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066373" comment="glibc-langpack-sc is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066374" comment="glibc-langpack-sc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066375" comment="glibc-langpack-sd is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066376" comment="glibc-langpack-sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066377" comment="glibc-langpack-se is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066378" comment="glibc-langpack-se is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066379" comment="glibc-langpack-sgs is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066380" comment="glibc-langpack-sgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066381" comment="glibc-langpack-shn is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066382" comment="glibc-langpack-shn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066383" comment="glibc-langpack-shs is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066384" comment="glibc-langpack-shs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066385" comment="glibc-langpack-si is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066386" comment="glibc-langpack-si is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066387" comment="glibc-langpack-sid is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066388" comment="glibc-langpack-sid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066389" comment="glibc-langpack-sk is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066390" comment="glibc-langpack-sk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066391" comment="glibc-langpack-sl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066392" comment="glibc-langpack-sl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066393" comment="glibc-langpack-sm is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066394" comment="glibc-langpack-sm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066395" comment="glibc-langpack-so is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066396" comment="glibc-langpack-so is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066397" comment="glibc-langpack-sq is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066398" comment="glibc-langpack-sq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066399" comment="glibc-langpack-sr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066400" comment="glibc-langpack-sr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066401" comment="glibc-langpack-ss is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066402" comment="glibc-langpack-ss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066403" comment="glibc-langpack-ssy is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066404" comment="glibc-langpack-ssy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066405" comment="glibc-langpack-st is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066406" comment="glibc-langpack-st is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066407" comment="glibc-langpack-su is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066408" comment="glibc-langpack-su is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066409" comment="glibc-langpack-sv is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066410" comment="glibc-langpack-sv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066411" comment="glibc-langpack-sw is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066412" comment="glibc-langpack-sw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066413" comment="glibc-langpack-syr is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066414" comment="glibc-langpack-syr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066415" comment="glibc-langpack-szl is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066416" comment="glibc-langpack-szl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066417" comment="glibc-langpack-ta is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066418" comment="glibc-langpack-ta is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066419" comment="glibc-langpack-tcy is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066420" comment="glibc-langpack-tcy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066421" comment="glibc-langpack-te is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066422" comment="glibc-langpack-te is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066423" comment="glibc-langpack-tg is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066424" comment="glibc-langpack-tg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066425" comment="glibc-langpack-th is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066426" comment="glibc-langpack-th is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066427" comment="glibc-langpack-the is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066428" comment="glibc-langpack-the is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066429" comment="glibc-langpack-ti is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066430" comment="glibc-langpack-ti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066431" comment="glibc-langpack-tig is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066432" comment="glibc-langpack-tig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066433" comment="glibc-langpack-tk is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066434" comment="glibc-langpack-tk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066435" comment="glibc-static is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066436" comment="glibc-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066437" comment="nss_db is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066438" comment="nss_db is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066439" comment="nss_hesiod is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066440" comment="nss_hesiod is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066441" comment="glibc-doc is earlier than 0:2.39-43.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066442" comment="glibc-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259420" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9420: libarchive security update (Moderate)</title>
        <reference ref_id="CVE-2025-25724" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-25724"/>
        <reference ref_id="RHSA-2025:9420" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9420"/>
        <reference ref_id="ALSA-2025:9420" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9420.html"/>
        <description>The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers.  

Security Fix(es):  

  * libarchive: Buffer Overflow vulnerability in libarchive (CVE-2025-25724)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-24"/>
          <updated date="2025-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2349221" id="2349221"></bugzilla>
          <cve public="20250302" href="https://access.redhat.com/security/cve/CVE-2025-25724" impact="Moderate" cwe="CWE-252" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L">CVE-2025-25724</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420001" comment="bsdtar is earlier than 0:3.7.7-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420002" comment="bsdtar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420003" comment="libarchive is earlier than 0:3.7.7-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420004" comment="libarchive is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420005" comment="libarchive-devel is earlier than 0:3.7.7-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420006" comment="libarchive-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510854" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10854: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-22036" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22036"/>
        <reference ref_id="RHSA-2025:10854" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10854"/>
        <reference ref_id="ALSA-2025:10854" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10854.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: exfat: fix random stack corruption after get_block (CVE-2025-22036)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-14"/>
          <updated date="2025-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360231" id="2360231"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22036" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22036</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854001" comment="kernel-rt is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854002" comment="kernel-rt-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854003" comment="kernel-rt-debug is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854004" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854005" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854006" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854007" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854008" comment="perf is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854009" comment="kernel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854010" comment="kernel-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854011" comment="kernel-debug is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854012" comment="kernel-debug-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854013" comment="kernel-debug-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854014" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854015" comment="kernel-debug-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854016" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854017" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854018" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854019" comment="kernel-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854020" comment="kernel-devel-matched is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854021" comment="kernel-headers is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854022" comment="kernel-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854023" comment="kernel-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854024" comment="kernel-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854025" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854026" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854027" comment="kernel-rt-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854028" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854029" comment="kernel-rt-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854030" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854031" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854032" comment="kernel-tools is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854033" comment="kernel-tools-libs is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854034" comment="kernel-uki-virt is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854035" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854036" comment="python3-perf is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854037" comment="rtla is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854038" comment="rv is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854046" comment="kernel-64k is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854047" comment="kernel-64k-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854074" comment="libperf is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510854076" comment="kernel-doc is earlier than 0:6.12.0-55.21.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259304" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9304: xorg-x11-server-Xwayland security update (Important)</title>
        <reference ref_id="CVE-2025-49175" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49175"/>
        <reference ref_id="CVE-2025-49176" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49176"/>
        <reference ref_id="CVE-2025-49177" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49177"/>
        <reference ref_id="CVE-2025-49178" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49178"/>
        <reference ref_id="CVE-2025-49179" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49179"/>
        <reference ref_id="CVE-2025-49180" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49180"/>
        <reference ref_id="RHSA-2025:9304" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9304"/>
        <reference ref_id="ALSA-2025:9304" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9304.html"/>
        <description>Xwayland is an X server for running X clients under Wayland.  

Security Fix(es):  

  * xorg-x11-server-Xwayland: xorg-x11-server: tigervnc: Out-of-Bounds Read in X Rendering Extension Animated Cursors (CVE-2025-49175)
  * xorg-x11-server-Xwayland: xorg-x11-server: tigervnc: Integer Overflow in Big Requests Extension (CVE-2025-49176)
  * xorg-x11-server-Xwayland: xorg-x11-server: tigervnc: Data Leak in XFIXES Extension's XFixesSetClientDisconnectMode (CVE-2025-49177)
  * xorg-x11-server-Xwayland: xorg-x11-server: tigervnc: Unprocessed Client Request Due to Bytes to Ignore (CVE-2025-49178)
  * xorg-x11-server-Xwayland: xorg-x11-server: tigervnc: Integer overflow in X Record extension (CVE-2025-49179)
  * xorg-x11-server-Xwayland: xorg-x11-server: tigervnc: Integer Overflow in X Resize, Rotate and Reflect (RandR) Extension (CVE-2025-49180)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-23"/>
          <updated date="2025-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369947" id="2369947"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2369954" id="2369954"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2369955" id="2369955"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2369977" id="2369977"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2369978" id="2369978"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2369981" id="2369981"></bugzilla>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-49175" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-49175</cve>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-49176" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-49176</cve>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-49177" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N">CVE-2025-49177</cve>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-49178" impact="Important" cwe="CWE-667" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-49178</cve>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-49179" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-49179</cve>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-49180" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H">CVE-2025-49180</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304001" comment="xorg-x11-server-Xwayland is earlier than 0:24.1.5-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304002" comment="xorg-x11-server-Xwayland is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304003" comment="xorg-x11-server-Xwayland-devel is earlier than 0:24.1.5-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304004" comment="xorg-x11-server-Xwayland-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510844" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10844: cloud-init security update (Important)</title>
        <reference ref_id="CVE-2024-6174" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-6174"/>
        <reference ref_id="RHSA-2025:10844" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10844"/>
        <reference ref_id="ALSA-2025:10844" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10844.html"/>
        <description>The cloud-init packages provide a set of init scripts for cloud instances. Cloud instances need special scripts to run during initialization to retrieve and install SSH keys, and to let the user run various scripts.  

Security Fix(es):  

  * cloud-init: Cloud init permissions flaw (CVE-2024-6174)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-14"/>
          <updated date="2025-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2374924" id="2374924"></bugzilla>
          <cve public="20250626" href="https://access.redhat.com/security/cve/CVE-2024-6174" impact="Important" cwe="CWE-276" cvss3="CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2024-6174</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202510844001" comment="cloud-init is earlier than 0:24.4-3.el10_0.2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202510844002" comment="cloud-init is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514178" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14178: tomcat9 security update (Important)</title>
        <reference ref_id="CVE-2025-48976" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48976"/>
        <reference ref_id="CVE-2025-48988" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48988"/>
        <reference ref_id="CVE-2025-48989" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48989"/>
        <reference ref_id="CVE-2025-49125" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49125"/>
        <reference ref_id="CVE-2025-52434" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-52434"/>
        <reference ref_id="CVE-2025-52520" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-52520"/>
        <reference ref_id="CVE-2025-53506" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53506"/>
        <reference ref_id="RHSA-2025:14178" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14178"/>
        <reference ref_id="ALSA-2025:14178" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14178.html"/>
        <description>Tomcat is the servlet container that is used in the official Reference Implementation for the Java Servlet and JavaServer Pages technologies. The Java Servlet and JavaServer Pages specifications are developed by Sun under the Java Community Process. Tomcat is developed in an open and participatory environment and released under the Apache Software License version 2.0. Tomcat is intended to be a collaboration of the best-of-breed developers from around the world.  

Security Fix(es):  

  * tomcat: Apache Tomcat DoS in multipart upload (CVE-2025-48988)
  * tomcat: Apache Tomcat: Security constraint bypass for pre/post-resources (CVE-2025-49125)
  * apache-commons-fileupload: Apache Commons FileUpload DoS via part headers (CVE-2025-48976)
  * tomcat: http/2 "MadeYouReset" DoS attack through HTTP/2 control frames (CVE-2025-48989)
  * tomcat: Apache Tomcat denial of service (CVE-2025-52520)
  * tomcat: Apache Tomcat denial of service (CVE-2025-52434)
  * tomcat: Apache Tomcat denial of service (CVE-2025-53506)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-20"/>
          <updated date="2025-08-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2373015" id="2373015"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2373018" id="2373018"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2373020" id="2373020"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2373309" id="2373309"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379374" id="2379374"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379382" id="2379382"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379386" id="2379386"></bugzilla>
          <cve public="20250616" href="https://access.redhat.com/security/cve/CVE-2025-48976" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-48976</cve>
          <cve public="20250616" href="https://access.redhat.com/security/cve/CVE-2025-48988" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-48988</cve>
          <cve public="20250813" href="https://access.redhat.com/security/cve/CVE-2025-48989" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-48989</cve>
          <cve public="20250616" href="https://access.redhat.com/security/cve/CVE-2025-49125" impact="Low" cwe="CWE-288" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-49125</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-52434" impact="Moderate" cwe="CWE-362" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-52434</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-52520" impact="Low" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-52520</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-53506" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-53506</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178001" comment="tomcat9-admin-webapps is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494004" comment="tomcat9-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178002" comment="tomcat9-docs-webapp is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494006" comment="tomcat9-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178003" comment="tomcat9-el-3.0-api is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494008" comment="tomcat9-el-3.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178004" comment="tomcat9-jsp-2.3-api is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494010" comment="tomcat9-jsp-2.3-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178005" comment="tomcat9-lib is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494012" comment="tomcat9-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178006" comment="tomcat9-servlet-4.0-api is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494014" comment="tomcat9-servlet-4.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178007" comment="tomcat9-webapps is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494016" comment="tomcat9-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514178008" comment="tomcat9 is earlier than 1:9.0.87-5.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494002" comment="tomcat9 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202513674" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:13674: toolbox security update (Important)</title>
        <reference ref_id="CVE-2025-23266" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-23266"/>
        <reference ref_id="RHSA-2025:13674" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:13674"/>
        <reference ref_id="ALSA-2025:13674" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-13674.html"/>
        <description>Toolbox is a tool for Linux operating systems, which allows the use of containerized command line environments. It is built on top of Podman and other standard container technologies from OCI.  

Security Fix(es):  

  * nvidia-container-toolkit: Privilege Escalation via Hook Initialization in NVIDIA Container Toolkit (CVE-2025-23266)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-12"/>
          <updated date="2025-08-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2381794" id="2381794"></bugzilla>
          <cve public="20250717" href="https://access.redhat.com/security/cve/CVE-2025-23266" impact="Important" cwe="CWE-426" cvss3="CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2025-23266</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513674001" comment="toolbox is earlier than 0:0.2-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513674002" comment="toolbox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513674003" comment="toolbox-tests is earlier than 0:0.2-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513674004" comment="toolbox-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257457" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7457: exiv2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-26623" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-26623"/>
        <reference ref_id="RHSA-2025:7457" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7457"/>
        <reference ref_id="ALSA-2025:7457" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7457.html"/>
        <description>Exiv2 is a C++ library to access image metadata, supporting read and write access to the Exif, IPTC and XMP metadata, Exif MakerNote support, extract and delete methods for Exif thumbnails, classes to access Ifd, and support for various image formats.  

Security Fix(es):  

  * exiv2: Use After Free in Exiv2 (CVE-2025-26623)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2346345" id="2346345"></bugzilla>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2025-26623" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L">CVE-2025-26623</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457001" comment="exiv2 is earlier than 0:0.28.3-3.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457002" comment="exiv2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457003" comment="exiv2-libs is earlier than 0:0.28.3-3.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457004" comment="exiv2-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457005" comment="exiv2-devel is earlier than 0:0.28.3-3.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457006" comment="exiv2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457007" comment="exiv2-doc is earlier than 0:0.28.3-3.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257457008" comment="exiv2-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202522361" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:22361: qt6-qtquick3d security update (Moderate)</title>
        <reference ref_id="CVE-2025-11277" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11277"/>
        <reference ref_id="RHSA-2025:22361" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:22361"/>
        <reference ref_id="ALSA-2025:22361" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-22361.html"/>
        <description>The Qt 6 Quick3D library.  

Security Fix(es):  

  * assimp: Open Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflow (CVE-2025-11277)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-01"/>
          <updated date="2025-12-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401622" id="2401622"></bugzilla>
          <cve public="20251005" href="https://access.redhat.com/security/cve/CVE-2025-11277" impact="Moderate" cwe="(CWE-122|CWE-787)" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H">CVE-2025-11277</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522361001" comment="qt6-qtquick3d is earlier than 0:6.9.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522361002" comment="qt6-qtquick3d is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522361003" comment="qt6-qtquick3d-devel is earlier than 0:6.9.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522361004" comment="qt6-qtquick3d-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522361005" comment="qt6-qtquick3d-examples is earlier than 0:6.9.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522361006" comment="qt6-qtquick3d-examples is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257508" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7508: java-21-openjdk security update (Moderate)</title>
        <reference ref_id="CVE-2025-21587" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21587"/>
        <reference ref_id="CVE-2025-30691" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30691"/>
        <reference ref_id="CVE-2025-30698" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30698"/>
        <reference ref_id="RHSA-2025:7508" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7508"/>
        <reference ref_id="ALSA-2025:7508" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7508.html"/>
        <description>The OpenJDK 21 runtime environment.  

Security Fix(es):  

  * openjdk: Enhance Buffered Image handling (Oracle CPU 2025-04) (CVE-2025-30698)
  * openjdk: Improve compiler transformations (Oracle CPU 2025-04) (CVE-2025-30691)
  * openjdk: Better TLS connection support (Oracle CPU 2025-04) (CVE-2025-21587)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359693" id="2359693"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359694" id="2359694"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359695" id="2359695"></bugzilla>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21587" impact="Moderate" cwe="CWE-208" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-21587</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30691" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2025-30691</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30698" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-30698</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508001" comment="java-21-openjdk is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508002" comment="java-21-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508003" comment="java-21-openjdk-demo is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508004" comment="java-21-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508005" comment="java-21-openjdk-devel is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508006" comment="java-21-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508007" comment="java-21-openjdk-headless is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508008" comment="java-21-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508009" comment="java-21-openjdk-javadoc is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508010" comment="java-21-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508011" comment="java-21-openjdk-javadoc-zip is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508012" comment="java-21-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508013" comment="java-21-openjdk-jmods is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508014" comment="java-21-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508015" comment="java-21-openjdk-src is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508016" comment="java-21-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508017" comment="java-21-openjdk-static-libs is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508018" comment="java-21-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508019" comment="java-21-openjdk-demo-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508020" comment="java-21-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508021" comment="java-21-openjdk-demo-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508022" comment="java-21-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508023" comment="java-21-openjdk-devel-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508024" comment="java-21-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508025" comment="java-21-openjdk-devel-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508026" comment="java-21-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508027" comment="java-21-openjdk-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508028" comment="java-21-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508029" comment="java-21-openjdk-headless-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508030" comment="java-21-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508031" comment="java-21-openjdk-headless-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508032" comment="java-21-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508033" comment="java-21-openjdk-jmods-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508034" comment="java-21-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508035" comment="java-21-openjdk-jmods-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508036" comment="java-21-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508037" comment="java-21-openjdk-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508038" comment="java-21-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508039" comment="java-21-openjdk-src-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508040" comment="java-21-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508041" comment="java-21-openjdk-src-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508042" comment="java-21-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508043" comment="java-21-openjdk-static-libs-fastdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508044" comment="java-21-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508045" comment="java-21-openjdk-static-libs-slowdebug is earlier than 1:21.0.7.0.6-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508046" comment="java-21-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202513944" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:13944: openjpeg2 security update (Important)</title>
        <reference ref_id="CVE-2025-54874" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-54874"/>
        <reference ref_id="RHSA-2025:13944" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:13944"/>
        <reference ref_id="ALSA-2025:13944" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-13944.html"/>
        <description>OpenJPEG is an open source library for reading and writing image files in JPEG2000 format.  

Security Fix(es):  

  * openjpeg: OpenJPEG OOB heap memory write (CVE-2025-54874)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-18"/>
          <updated date="2025-08-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2386543" id="2386543"></bugzilla>
          <cve public="20250805" href="https://access.redhat.com/security/cve/CVE-2025-54874" impact="Important" cwe="CWE-457" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L">CVE-2025-54874</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513944001" comment="openjpeg2 is earlier than 0:2.5.2-4.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513944002" comment="openjpeg2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513944003" comment="openjpeg2-devel is earlier than 0:2.5.2-4.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513944004" comment="openjpeg2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513944005" comment="openjpeg2-tools is earlier than 0:2.5.2-4.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513944006" comment="openjpeg2-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257494" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7494: tomcat9 security update (Moderate)</title>
        <reference ref_id="CVE-2025-24813" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-24813"/>
        <reference ref_id="RHSA-2025:7494" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7494"/>
        <reference ref_id="ALSA-2025:7494" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7494.html"/>
        <description>Tomcat is the servlet container that is used in the official Reference Implementation for the Java Servlet and JavaServer Pages technologies. The Java Servlet and JavaServer Pages specifications are developed by Sun under the Java Community Process. Tomcat is developed in an open and participatory environment and released under the Apache Software License version 2.0. Tomcat is intended to be a collaboration of the best-of-breed developers from around the world.  

Security Fix(es):  

  * tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT (CVE-2025-24813)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2351129" id="2351129"></bugzilla>
          <cve public="20250310" href="https://access.redhat.com/security/cve/CVE-2025-24813" impact="Moderate" cwe="(CWE-44|CWE-502)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L">CVE-2025-24813</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494001" comment="tomcat9 is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494002" comment="tomcat9 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494003" comment="tomcat9-admin-webapps is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494004" comment="tomcat9-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494005" comment="tomcat9-docs-webapp is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494006" comment="tomcat9-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494007" comment="tomcat9-el-3.0-api is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494008" comment="tomcat9-el-3.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494009" comment="tomcat9-jsp-2.3-api is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494010" comment="tomcat9-jsp-2.3-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494011" comment="tomcat9-lib is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494012" comment="tomcat9-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494013" comment="tomcat9-servlet-4.0-api is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494014" comment="tomcat9-servlet-4.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494015" comment="tomcat9-webapps is earlier than 1:9.0.87-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494016" comment="tomcat9-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202522012" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:22012: buildah security update (Important)</title>
        <reference ref_id="CVE-2025-52881" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-52881"/>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2025:22012" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:22012"/>
        <reference ref_id="ALSA-2025:22012" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-22012.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * runc: container escape and denial of service due to arbitrary write gadgets and procfs write redirects (CVE-2025-52881)
  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-25"/>
          <updated date="2025-11-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2404715" id="2404715"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251105" href="https://access.redhat.com/security/cve/CVE-2025-52881" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H">CVE-2025-52881</cve>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522012001" comment="buildah is earlier than 2:1.41.6-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522012002" comment="buildah-tests is earlier than 2:1.41.6-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257497" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7497: tomcat security update (Moderate)</title>
        <reference ref_id="CVE-2024-52316" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-52316"/>
        <reference ref_id="CVE-2024-54677" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-54677"/>
        <reference ref_id="CVE-2025-24813" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-24813"/>
        <reference ref_id="RHSA-2025:7497" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7497"/>
        <reference ref_id="ALSA-2025:7497" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7497.html"/>
        <description>Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies.  

Security Fix(es):  

  * tomcat: Apache Tomcat: Authentication bypass when using Jakarta Authentication API (CVE-2024-52316)
  * tomcat: Apache Tomcat: DoS in examples web application (CVE-2024-54677)
  * tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT (CVE-2025-24813)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2326972" id="2326972"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2332815" id="2332815"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351129" id="2351129"></bugzilla>
          <cve public="20241118" href="https://access.redhat.com/security/cve/CVE-2024-52316" impact="Low" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2024-52316</cve>
          <cve public="20241217" href="https://access.redhat.com/security/cve/CVE-2024-54677" impact="Low" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2024-54677</cve>
          <cve public="20250310" href="https://access.redhat.com/security/cve/CVE-2025-24813" impact="Moderate" cwe="(CWE-44|CWE-502)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L">CVE-2025-24813</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497001" comment="tomcat-lib is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497002" comment="tomcat-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497003" comment="tomcat is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497004" comment="tomcat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497005" comment="tomcat-admin-webapps is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497006" comment="tomcat-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497007" comment="tomcat-docs-webapp is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497008" comment="tomcat-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497009" comment="tomcat-el-5.0-api is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497010" comment="tomcat-el-5.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497011" comment="tomcat-jsp-3.1-api is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497012" comment="tomcat-jsp-3.1-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497013" comment="tomcat-servlet-6.0-api is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497014" comment="tomcat-servlet-6.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497015" comment="tomcat-webapps is earlier than 1:10.1.36-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497016" comment="tomcat-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511332" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11332: tomcat9 security update (Important)</title>
        <reference ref_id="CVE-2024-56337" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56337"/>
        <reference ref_id="CVE-2025-31650" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-31650"/>
        <reference ref_id="RHSA-2025:11332" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11332"/>
        <reference ref_id="ALSA-2025:11332" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11332.html"/>
        <description>Tomcat is the servlet container that is used in the official Reference Implementation for the Java Servlet and JavaServer Pages technologies. The Java Servlet and JavaServer Pages specifications are developed by Sun under the Java Community Process. Tomcat is developed in an open and participatory environment and released under the Apache Software License version 2.0. Tomcat is intended to be a collaboration of the best-of-breed developers from around the world.  

Security Fix(es):  

  * tomcat: Incomplete fix for CVE-2024-50379 - RCE due to TOCTOU issue in JSP compilation (CVE-2024-56337)
  * tomcat: Apache Tomcat: DoS via malformed HTTP/2 PRIORITY_UPDATE frame (CVE-2025-31650)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-16"/>
          <updated date="2025-07-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2333521" id="2333521"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362783" id="2362783"></bugzilla>
          <cve public="20241220" href="https://access.redhat.com/security/cve/CVE-2024-56337" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2024-56337</cve>
          <cve public="20250428" href="https://access.redhat.com/security/cve/CVE-2025-31650" impact="Important" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-31650</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332001" comment="tomcat9 is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494002" comment="tomcat9 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332002" comment="tomcat9-admin-webapps is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494004" comment="tomcat9-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332003" comment="tomcat9-docs-webapp is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494006" comment="tomcat9-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332004" comment="tomcat9-el-3.0-api is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494008" comment="tomcat9-el-3.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332005" comment="tomcat9-jsp-2.3-api is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494010" comment="tomcat9-jsp-2.3-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332006" comment="tomcat9-lib is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494012" comment="tomcat9-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332007" comment="tomcat9-servlet-4.0-api is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494014" comment="tomcat9-servlet-4.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511332008" comment="tomcat9-webapps is earlier than 1:9.0.87-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494016" comment="tomcat9-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257475" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7475: grafana security update (Important)</title>
        <reference ref_id="CVE-2025-30204" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30204"/>
        <reference ref_id="RHSA-2025:7475" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7475"/>
        <reference ref_id="ALSA-2025:7475" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7475.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * golang-jwt/jwt: jwt-go allows excessive memory allocation during header parsing (CVE-2025-30204)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2354195" id="2354195"></bugzilla>
          <cve public="20250321" href="https://access.redhat.com/security/cve/CVE-2025-30204" impact="Important" cwe="CWE-405" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30204</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475001" comment="grafana is earlier than 0:10.2.6-15.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475003" comment="grafana-selinux is earlier than 0:10.2.6-15.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258636" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8636: perl-FCGI security update (Important)</title>
        <reference ref_id="CVE-2025-40907" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40907"/>
        <reference ref_id="RHSA-2025:8636" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8636"/>
        <reference ref_id="ALSA-2025:8636" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8636.html"/>
        <description>FastCGI Perl bindings.  

Security Fix(es):  

  * perl-fcgi: FCGI versions 0.44 through 0.82, for Perl, include a vulnerable version of the FastCGI fcgi2 (aka fcgi) library (CVE-2025-40907)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-09"/>
          <updated date="2025-06-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2366847" id="2366847"></bugzilla>
          <cve public="20250516" href="https://access.redhat.com/security/cve/CVE-2025-40907" impact="Important" cwe="CWE-1395" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-40907</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258636001" comment="perl-FCGI is earlier than 1:0.82-13.1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258636002" comment="perl-FCGI is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257512" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7512: expat security update (Moderate)</title>
        <reference ref_id="CVE-2024-8176" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-8176"/>
        <reference ref_id="RHSA-2025:7512" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7512"/>
        <reference ref_id="ALSA-2025:7512" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7512.html"/>
        <description>Expat is a C library for parsing XML documents.  

Security Fix(es):  

  * libexpat: expat: Improper Restriction of XML Entity Expansion Depth in libexpat (CVE-2024-8176)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2310137" id="2310137"></bugzilla>
          <cve public="20250313" href="https://access.redhat.com/security/cve/CVE-2024-8176" impact="Moderate" cwe="CWE-674" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2024-8176</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512001" comment="expat is earlier than 0:2.7.1-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512002" comment="expat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512003" comment="expat-devel is earlier than 0:2.7.1-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512004" comment="expat-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257482" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7482: git security update (Moderate)</title>
        <reference ref_id="CVE-2024-52005" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-52005"/>
        <reference ref_id="RHSA-2025:7482" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7482"/>
        <reference ref_id="ALSA-2025:7482" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7482.html"/>
        <description>Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection.  

Security Fix(es):  

  * git: The sideband payload is passed unfiltered to the terminal in git (CVE-2024-52005)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2338289" id="2338289"></bugzilla>
          <cve public="20250115" href="https://access.redhat.com/security/cve/CVE-2024-52005" impact="Moderate" cwe="(CWE-116|CWE-150)" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2024-52005</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482001" comment="git is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482002" comment="git is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482003" comment="git-core is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482004" comment="git-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482005" comment="git-credential-libsecret is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482006" comment="git-credential-libsecret is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482007" comment="git-daemon is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482008" comment="git-daemon is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482009" comment="git-all is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482010" comment="git-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482011" comment="git-core-doc is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482012" comment="git-core-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482013" comment="git-email is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482014" comment="git-email is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482015" comment="git-gui is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482016" comment="git-gui is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482017" comment="git-instaweb is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482018" comment="git-instaweb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482019" comment="git-subtree is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482020" comment="git-subtree is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482021" comment="git-svn is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482022" comment="git-svn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482023" comment="gitk is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482024" comment="gitk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482025" comment="gitweb is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482026" comment="gitweb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482027" comment="perl-Git is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482028" comment="perl-Git is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482029" comment="perl-Git-SVN is earlier than 0:2.47.1-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482030" comment="perl-Git-SVN is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259317" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9317: delve security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9317" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9317"/>
        <reference ref_id="ALSA-2025:9317" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9317.html"/>
        <description>Delve is a debugger for the Go programming language. The goal of the project is to provide a simple, full featured debugging tool for Go. Delve should be easy to invoke and easy to use. Chances are if you're using a debugger, things aren't going your way. With that in mind, Delve should stay out of your way as much as possible.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-23"/>
          <updated date="2025-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259317001" comment="delve is earlier than 0:1.24.1-2.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259317002" comment="delve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516428" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16428: libtpms security update (Moderate)</title>
        <reference ref_id="CVE-2025-49133" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49133"/>
        <reference ref_id="RHSA-2025:16428" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16428"/>
        <reference ref_id="ALSA-2025:16428" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16428.html"/>
        <description>The libtpms is a library providing Trusted Platform Module (TPM) functionality for virtual machines.  

Security Fix(es):  

  * libtpms: Libtpms Out-of-Bounds Read Vulnerability (CVE-2025-49133)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-23"/>
          <updated date="2025-09-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2371585" id="2371585"></bugzilla>
          <cve public="20250610" href="https://access.redhat.com/security/cve/CVE-2025-49133" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:H">CVE-2025-49133</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202516428001" comment="libtpms is earlier than 0:0.9.6-11.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202516428002" comment="libtpms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202517119" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:17119: perl-JSON-XS security update (Moderate)</title>
        <reference ref_id="CVE-2025-40928" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40928"/>
        <reference ref_id="RHSA-2025:17119" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:17119"/>
        <reference ref_id="ALSA-2025:17119" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-17119.html"/>
        <description>This module converts Perl data structures to JSON and vice versa. Its primary goal is to be correct and its secondary goal is to be fast. To reach the latter goal it was written in C.  

Security Fix(es):  

  * JSON-XS: integer buffer overflow causing a segfault when parsing crafted JSON (CVE-2025-40928)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-30"/>
          <updated date="2025-09-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2393878" id="2393878"></bugzilla>
          <cve public="20250908" href="https://access.redhat.com/security/cve/CVE-2025-40928" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-40928</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202517119001" comment="perl-JSON-XS is earlier than 1:4.04-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202517119002" comment="perl-JSON-XS is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259421" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9421: iputils security update (Moderate)</title>
        <reference ref_id="CVE-2025-47268" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47268"/>
        <reference ref_id="RHSA-2025:9421" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9421"/>
        <reference ref_id="ALSA-2025:9421" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9421.html"/>
        <description>The iputils packages contain basic utilities for monitoring a network, including ping.   

Security Fix(es):  

  * iputils: Signed Integer Overflow in Timestamp Multiplication in iputils ping (CVE-2025-47268)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-24"/>
          <updated date="2025-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2364090" id="2364090"></bugzilla>
          <cve public="20250505" href="https://access.redhat.com/security/cve/CVE-2025-47268" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L">CVE-2025-47268</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259421001" comment="iputils is earlier than 0:20240905-2.el10_0.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259421002" comment="iputils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257506" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7506: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-2817" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-2817"/>
        <reference ref_id="CVE-2025-4083" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4083"/>
        <reference ref_id="CVE-2025-4087" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4087"/>
        <reference ref_id="CVE-2025-4091" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4091"/>
        <reference ref_id="CVE-2025-4093" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4093"/>
        <reference ref_id="RHSA-2025:7506" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7506"/>
        <reference ref_id="ALSA-2025:7506" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7506.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Privilege escalation in Firefox Updater (CVE-2025-2817)
  * firefox: thunderbird: Unsafe attribute access during XPath parsing (CVE-2025-4087)
  * firefox: thunderbird: Process isolation bypass using "javascript:" URI links in cross-origin frames (CVE-2025-4083)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10 (CVE-2025-4091)
  * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 128.10 and Thunderbird 128.10 (CVE-2025-4093)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2362902" id="2362902"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362904" id="2362904"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362907" id="2362907"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362912" id="2362912"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362915" id="2362915"></bugzilla>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-2817" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2025-2817</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4083" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2025-4083</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4087" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2025-4087</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4091" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4091</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4093" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4093</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20257506001" comment="firefox is earlier than 0:128.10.0-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514137" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14137: libarchive security update (Important)</title>
        <reference ref_id="CVE-2025-5914" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5914"/>
        <reference ref_id="RHSA-2025:14137" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14137"/>
        <reference ref_id="ALSA-2025:14137" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14137.html"/>
        <description>The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers.  

Security Fix(es):  

  * libarchive: Double free at archive_read_format_rar_seek_data() in archive_read_support_format_rar.c (CVE-2025-5914)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-20"/>
          <updated date="2025-08-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2370861" id="2370861"></bugzilla>
          <cve public="20250520" href="https://access.redhat.com/security/cve/CVE-2025-5914" impact="Important" cwe="CWE-190-&gt;CWE-415" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-5914</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514137001" comment="libarchive-devel is earlier than 0:3.7.7-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420006" comment="libarchive-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514137002" comment="bsdtar is earlier than 0:3.7.7-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420002" comment="bsdtar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514137003" comment="libarchive is earlier than 0:3.7.7-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420004" comment="libarchive is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257507" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7507: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-2817" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-2817"/>
        <reference ref_id="CVE-2025-2830" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-2830"/>
        <reference ref_id="CVE-2025-3522" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3522"/>
        <reference ref_id="CVE-2025-3523" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3523"/>
        <reference ref_id="CVE-2025-4083" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4083"/>
        <reference ref_id="CVE-2025-4087" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4087"/>
        <reference ref_id="CVE-2025-4091" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4091"/>
        <reference ref_id="CVE-2025-4093" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4093"/>
        <reference ref_id="RHSA-2025:7507" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7507"/>
        <reference ref_id="ALSA-2025:7507" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7507.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * thunderbird: User Interface (UI) Misrepresentation of attachment URL (CVE-2025-3523)
  * thunderbird: Information Disclosure of /tmp directory listing (CVE-2025-2830)
  * thunderbird: Leak of hashed Window credentials via crafted attachment URL (CVE-2025-3522)
  * firefox: thunderbird: Privilege escalation in Firefox Updater (CVE-2025-2817)
  * firefox: thunderbird: Unsafe attribute access during XPath parsing (CVE-2025-4087)
  * firefox: thunderbird: Process isolation bypass using "javascript:" URI links in cross-origin frames (CVE-2025-4083)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10 (CVE-2025-4091)
  * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 128.10 and Thunderbird 128.10 (CVE-2025-4093)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359786" id="2359786"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359789" id="2359789"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359793" id="2359793"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362902" id="2362902"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362904" id="2362904"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362907" id="2362907"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362912" id="2362912"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2362915" id="2362915"></bugzilla>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-2817" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2025-2817</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-2830" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:N/A:N">CVE-2025-2830</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-3522" impact="Important" cwe="CWE-1220" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N">CVE-2025-3522</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-3523" impact="Low" cwe="CWE-451" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:H/A:L">CVE-2025-3523</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4083" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2025-4083</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4087" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2025-4087</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4091" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4091</cve>
          <cve public="20250429" href="https://access.redhat.com/security/cve/CVE-2025-4093" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-4093</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20257507001" comment="thunderbird is earlier than 0:128.10.0-1.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511537" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11537: sudo security update (Important)</title>
        <reference ref_id="CVE-2025-32462" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32462"/>
        <reference ref_id="CVE-2025-32463" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32463"/>
        <reference ref_id="RHSA-2025:11537" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11537"/>
        <reference ref_id="ALSA-2025:11537" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11537.html"/>
        <description>The sudo packages contain the sudo utility which allows system administrators to provide certain users with the permission to execute privileged commands, which are used for system management purposes, without having to log in as root.  

Security Fix(es):  

  * sudo: LPE via host option (CVE-2025-32462)
  * sudo: LPE via chroot option (CVE-2025-32463)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-22"/>
          <updated date="2025-07-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2374692" id="2374692"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2374693" id="2374693"></bugzilla>
          <cve public="20250630" href="https://access.redhat.com/security/cve/CVE-2025-32462" impact="Important" cwe="CWE-863" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-32462</cve>
          <cve public="20250630" href="https://access.redhat.com/security/cve/CVE-2025-32463" impact="Important" cwe="CWE-427" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-32463</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511537001" comment="sudo is earlier than 0:1.9.15-8.p5.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511537002" comment="sudo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511537003" comment="sudo-python-plugin is earlier than 0:1.9.15-8.p5.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511537004" comment="sudo-python-plugin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259307" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9307: freerdp security update (Moderate)</title>
        <reference ref_id="CVE-2025-4478" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4478"/>
        <reference ref_id="RHSA-2025:9307" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9307"/>
        <reference ref_id="ALSA-2025:9307" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9307.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * gnome-remote-desktop: freerdp: Unauthenticated RDP Packet Causes Segfault in FreeRDP Leading to Denial of Service (CVE-2025-4478)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-23"/>
          <updated date="2025-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20250513" href="https://access.redhat.com/security/cve/CVE-2025-4478" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H">CVE-2025-4478</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307001" comment="freerdp is earlier than 2:3.10.3-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307003" comment="freerdp-libs is earlier than 2:3.10.3-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307005" comment="libwinpr is earlier than 2:3.10.3-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307007" comment="freerdp-devel is earlier than 2:3.10.3-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307009" comment="freerdp-server is earlier than 2:3.10.3-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307011" comment="libwinpr-devel is earlier than 2:3.10.3-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511533" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11533: git security update (Important)</title>
        <reference ref_id="CVE-2024-50349" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-50349"/>
        <reference ref_id="CVE-2024-52006" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-52006"/>
        <reference ref_id="CVE-2025-27613" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27613"/>
        <reference ref_id="CVE-2025-27614" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27614"/>
        <reference ref_id="CVE-2025-46835" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46835"/>
        <reference ref_id="CVE-2025-48384" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48384"/>
        <reference ref_id="CVE-2025-48385" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48385"/>
        <reference ref_id="RHSA-2025:11533" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11533"/>
        <reference ref_id="ALSA-2025:11533" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11533.html"/>
        <description>Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection.  

Security Fix(es):  

  * git: Git does not sanitize URLs when asking for credentials interactively (CVE-2024-50349)
  * git: Newline confusion in credential helpers can lead to credential exfiltration in git (CVE-2024-52006)
  * git: Git arbitrary code execution (CVE-2025-48384)
  * git: Git arbitrary file writes (CVE-2025-48385)
  * gitk: Git file creation flaw (CVE-2025-27613)
  * gitk: git script execution flaw (CVE-2025-27614)
  * git: Git GUI can create and overwrite files for which the user has write permission (CVE-2025-46835)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-22"/>
          <updated date="2025-07-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2337824" id="2337824"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2337956" id="2337956"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2378806" id="2378806"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2378808" id="2378808"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379124" id="2379124"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379125" id="2379125"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379326" id="2379326"></bugzilla>
          <cve public="20250114" href="https://access.redhat.com/security/cve/CVE-2024-50349" impact="Low" cwe="(CWE-116|CWE-147|CWE-150)" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N">CVE-2024-50349</cve>
          <cve public="20250114" href="https://access.redhat.com/security/cve/CVE-2024-52006" impact="Low" cwe="(CWE-116|CWE-147|CWE-150)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N">CVE-2024-52006</cve>
          <cve public="20250708" href="https://access.redhat.com/security/cve/CVE-2025-27613" impact="Moderate" cwe="CWE-73" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N">CVE-2025-27613</cve>
          <cve public="20250708" href="https://access.redhat.com/security/cve/CVE-2025-27614" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L">CVE-2025-27614</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-46835" impact="Low" cwe="CWE-88" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N">CVE-2025-46835</cve>
          <cve public="20250708" href="https://access.redhat.com/security/cve/CVE-2025-48384" impact="Important" cwe="(CWE-436|CWE-59)" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H">CVE-2025-48384</cve>
          <cve public="20250708" href="https://access.redhat.com/security/cve/CVE-2025-48385" impact="Important" cwe="(CWE-73|CWE-88)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2025-48385</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533001" comment="git is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482002" comment="git is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533002" comment="git-core is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482004" comment="git-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533003" comment="git-credential-libsecret is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482006" comment="git-credential-libsecret is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533004" comment="git-daemon is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482008" comment="git-daemon is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533005" comment="git-email is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482014" comment="git-email is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533006" comment="git-gui is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482016" comment="git-gui is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533007" comment="git-instaweb is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482018" comment="git-instaweb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533008" comment="git-subtree is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482020" comment="git-subtree is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533009" comment="git-svn is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482022" comment="git-svn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533010" comment="gitk is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482024" comment="gitk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533011" comment="gitweb is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482026" comment="gitweb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533012" comment="perl-Git is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482028" comment="perl-Git is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533013" comment="perl-Git-SVN is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482030" comment="perl-Git-SVN is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533014" comment="git-all is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482010" comment="git-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511533015" comment="git-core-doc is earlier than 0:2.47.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257482012" comment="git-core-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258915" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8915: grafana-pcp security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:8915" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8915"/>
        <reference ref_id="ALSA-2025:8915" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8915.html"/>
        <description>The Grafana plugin for Performance Co-Pilot includes datasources for scalable time series from pmseries and Redis, live PCP metrics and bpftrace scripts from pmdabpftrace, as well as several dashboards.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-11"/>
          <updated date="2025-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258915001" comment="grafana-pcp is earlier than 0:5.2.2-3.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258915002" comment="grafana-pcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257490" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7490: mod_auth_openidc security update (Important)</title>
        <reference ref_id="CVE-2025-31492" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-31492"/>
        <reference ref_id="RHSA-2025:7490" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7490"/>
        <reference ref_id="ALSA-2025:7490" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7490.html"/>
        <description>The mod_auth_openidc is an OpenID Connect authentication module for Apache HTTP Server. It enables an Apache HTTP Server to operate as an OpenID Connect Relying Party and/or OAuth 2.0 Resource Server.   

Security Fix(es):  

  * mod_auth_openidc: mod_auth_openidc allows OIDCProviderAuthRequestMethod POSTs to leak protected data (CVE-2025-31492)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2357738" id="2357738"></bugzilla>
          <cve public="20250406" href="https://access.redhat.com/security/cve/CVE-2025-31492" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2025-31492</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20257490001" comment="mod_auth_openidc is earlier than 0:2.4.15-4.el10_0.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20257490002" comment="mod_auth_openidc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259178" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9178: kea security update (Important)</title>
        <reference ref_id="CVE-2025-32801" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32801"/>
        <reference ref_id="CVE-2025-32802" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32802"/>
        <reference ref_id="CVE-2025-32803" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32803"/>
        <reference ref_id="RHSA-2025:9178" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9178"/>
        <reference ref_id="ALSA-2025:9178" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9178.html"/>
        <description>DHCP implementation from Internet Systems Consortium, Inc. that features fully functional DHCPv4, DHCPv6 and Dynamic DNS servers. Both DHCP servers fully support server discovery, address assignment, renewal, rebinding and release. The DHCPv6 server supports prefix delegation. Both servers support DNS Update mechanism, using stand-alone DDNS daemon.  

Security Fix(es):  

  * kea: Loading a malicious hook library can lead to local privilege escalation (CVE-2025-32801)
  * kea: Insecure handling of file paths allows multiple local attacks (CVE-2025-32802)
  * kea: Insecure file permissions can result in confidential information leakage (CVE-2025-32803)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2366362" id="2366362"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367495" id="2367495"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367496" id="2367496"></bugzilla>
          <cve public="20250528" href="https://access.redhat.com/security/cve/CVE-2025-32801" impact="Important" cwe="CWE-267" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-32801</cve>
          <cve public="20250528" href="https://access.redhat.com/security/cve/CVE-2025-32802" impact="Moderate" cwe="CWE-250" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H">CVE-2025-32802</cve>
          <cve public="20250528" href="https://access.redhat.com/security/cve/CVE-2025-32803" impact="Moderate" cwe="CWE-538" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVE-2025-32803</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178001" comment="kea is earlier than 0:2.6.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178002" comment="kea is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178003" comment="kea-hooks is earlier than 0:2.6.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178004" comment="kea-hooks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178005" comment="kea-libs is earlier than 0:2.6.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178006" comment="kea-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178007" comment="kea-keama is earlier than 0:2.6.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178008" comment="kea-keama is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178009" comment="kea-doc is earlier than 0:2.6.3-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178010" comment="kea-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515901" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15901: podman security update (Important)</title>
        <reference ref_id="CVE-2025-9566" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9566"/>
        <reference ref_id="RHSA-2025:15901" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15901"/>
        <reference ref_id="ALSA-2025:15901" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15901.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * podman: Podman kube play command may overwrite host files (CVE-2025-9566)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-16"/>
          <updated date="2025-09-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2393152" id="2393152"></bugzilla>
          <cve public="20250904" href="https://access.redhat.com/security/cve/CVE-2025-9566" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H">CVE-2025-9566</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515901001" comment="podman-remote is earlier than 6:5.4.0-13.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515901002" comment="podman is earlier than 6:5.4.0-13.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515901003" comment="podman-tests is earlier than 6:5.4.0-13.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515901004" comment="podman-docker is earlier than 6:5.4.0-13.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259623" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9623: osbuild-composer security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9623" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9623"/>
        <reference ref_id="ALSA-2025:9623" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9623.html"/>
        <description>A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-25"/>
          <updated date="2025-06-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623001" comment="osbuild-composer is earlier than 0:134.1-2.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623002" comment="osbuild-composer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623003" comment="osbuild-composer-core is earlier than 0:134.1-2.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623004" comment="osbuild-composer-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623005" comment="osbuild-composer-worker is earlier than 0:134.1-2.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623006" comment="osbuild-composer-worker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259486" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9486: qt6-qtbase security update (Moderate)</title>
        <reference ref_id="CVE-2025-5455" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5455"/>
        <reference ref_id="RHSA-2025:9486" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9486"/>
        <reference ref_id="ALSA-2025:9486" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9486.html"/>
        <description>Qt is a software toolkit for developing applications. This package contains base tools, like string, xml, and network handling.  

Security Fix(es):  

  * qt5: qt6: QtCore Assertion Failure Denial of Service (CVE-2025-5455)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-24"/>
          <updated date="2025-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369722" id="2369722"></bugzilla>
          <cve public="20250602" href="https://access.redhat.com/security/cve/CVE-2025-5455" impact="Moderate" cwe="(CWE-20|CWE-617)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-5455</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486001" comment="qt6-qtbase-gui is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486002" comment="qt6-qtbase-gui is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486003" comment="qt6-qtbase-mysql is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486004" comment="qt6-qtbase-mysql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486005" comment="qt6-qtbase-odbc is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486006" comment="qt6-qtbase-odbc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486007" comment="qt6-qtbase-postgresql is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486008" comment="qt6-qtbase-postgresql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486009" comment="qt6-qtbase is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486010" comment="qt6-qtbase is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486011" comment="qt6-qtbase-devel is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486012" comment="qt6-qtbase-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486013" comment="qt6-qtbase-examples is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486014" comment="qt6-qtbase-examples is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486015" comment="qt6-qtbase-private-devel is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486016" comment="qt6-qtbase-private-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486017" comment="qt6-qtbase-static is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486018" comment="qt6-qtbase-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486019" comment="qt6-qtbase-common is earlier than 0:6.8.1-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259486020" comment="qt6-qtbase-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257459" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7459: buildah security update (Moderate)</title>
        <reference ref_id="CVE-2025-27144" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27144"/>
        <reference ref_id="RHSA-2025:7459" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7459"/>
        <reference ref_id="ALSA-2025:7459" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7459.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * go-jose: Go JOSE's Parsing Vulnerable to Denial of Service (CVE-2025-27144)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2347423" id="2347423"></bugzilla>
          <cve public="20250224" href="https://access.redhat.com/security/cve/CVE-2025-27144" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-27144</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257459001" comment="buildah is earlier than 2:1.39.4-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257459002" comment="buildah-tests is earlier than 2:1.39.4-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259156" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9156: golang-github-openprinting-ipp-usb security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9156" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9156"/>
        <reference ref_id="ALSA-2025:9156" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9156.html"/>
        <description>HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables  
driverless support for USB devices capable of using IPP-over-USB protocol.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259156001" comment="ipp-usb is earlier than 0:0.9.27-3.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259156002" comment="ipp-usb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257496" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7496: libxslt security update (Important)</title>
        <reference ref_id="CVE-2024-55549" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-55549"/>
        <reference ref_id="CVE-2025-24855" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-24855"/>
        <reference ref_id="RHSA-2025:7496" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7496"/>
        <reference ref_id="ALSA-2025:7496" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7496.html"/>
        <description>libxslt is a library for transforming XML files into other textual formats (including HTML, plain text, and other XML representations of the underlying data) using the standard XSLT stylesheet transformation mechanism.   

Security Fix(es):  

  * libxslt: Use-After-Free in libxslt numbers.c (CVE-2025-24855)
  * libxslt: Use-After-Free in libxslt (xsltGetInheritedNsList) (CVE-2024-55549)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2352484" id="2352484"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2352483" id="2352483"></bugzilla>
          <cve public="20250314" href="https://access.redhat.com/security/cve/CVE-2024-55549" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H">CVE-2024-55549</cve>
          <cve public="20250314" href="https://access.redhat.com/security/cve/CVE-2025-24855" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H">CVE-2025-24855</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257496001" comment="libxslt is earlier than 0:1.1.39-7.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257496002" comment="libxslt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257496003" comment="libxslt-devel is earlier than 0:1.1.39-7.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257496004" comment="libxslt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258666" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8666: grafana security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:8666" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8666"/>
        <reference ref_id="ALSA-2025:8666" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8666.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-09"/>
          <updated date="2025-06-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258666001" comment="grafana is earlier than 0:10.2.6-18.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258666002" comment="grafana-selinux is earlier than 0:10.2.6-18.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259120" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9120: libvpx security update (Important)</title>
        <reference ref_id="CVE-2025-5283" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5283"/>
        <reference ref_id="RHSA-2025:9120" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9120"/>
        <reference ref_id="ALSA-2025:9120" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9120.html"/>
        <description>The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.  

Security Fix(es):  

  * libvpx: Double-free in libvpx encoder (CVE-2025-5283)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-16"/>
          <updated date="2025-06-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2368749" id="2368749"></bugzilla>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5283" impact="Important" cwe="CWE-415" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2025-5283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259120001" comment="libvpx is earlier than 0:1.14.1-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259120002" comment="libvpx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259120003" comment="libvpx-devel is earlier than 0:1.14.1-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259120004" comment="libvpx-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257476" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7476: python-jinja2 security update (Important)</title>
        <reference ref_id="CVE-2025-27516" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27516"/>
        <reference ref_id="RHSA-2025:7476" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7476"/>
        <reference ref_id="ALSA-2025:7476" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7476.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * jinja2: Jinja sandbox breakout through attr filter selecting format method (CVE-2025-27516)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2350190" id="2350190"></bugzilla>
          <cve public="20250305" href="https://access.redhat.com/security/cve/CVE-2025-27516" impact="Important" cwe="CWE-1336" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-27516</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257476001" comment="python3-jinja2 is earlier than 0:3.1.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257476002" comment="python3-jinja2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257476003" comment="python3-jinja2+i18n is earlier than 0:3.1.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257476004" comment="python3-jinja2+i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258135" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8135: python-tornado security update (Important)</title>
        <reference ref_id="CVE-2025-47287" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47287"/>
        <reference ref_id="RHSA-2025:8135" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8135"/>
        <reference ref_id="ALSA-2025:8135" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8135.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * tornado: Tornado Multipart Form-Data Denial of Service (CVE-2025-47287)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-26"/>
          <updated date="2025-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2366703" id="2366703"></bugzilla>
          <cve public="20250515" href="https://access.redhat.com/security/cve/CVE-2025-47287" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-47287</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258135001" comment="python3-tornado is earlier than 0:6.4.2-1.el10_0.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258135002" comment="python3-tornado is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259063" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9063: git-lfs security update (Moderate)</title>
        <reference ref_id="CVE-2025-22871" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22871"/>
        <reference ref_id="RHSA-2025:9063" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9063"/>
        <reference ref_id="ALSA-2025:9063" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9063.html"/>
        <description>Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server.  

Security Fix(es):  

  * net/[http:](http:) Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-16"/>
          <updated date="2025-06-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358493" id="2358493"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-22871" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N">CVE-2025-22871</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063001" comment="git-lfs is earlier than 0:3.6.1-2.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063002" comment="git-lfs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257467" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7467: skopeo security update (Moderate)</title>
        <reference ref_id="CVE-2025-27144" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27144"/>
        <reference ref_id="RHSA-2025:7467" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7467"/>
        <reference ref_id="ALSA-2025:7467" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7467.html"/>
        <description>The skopeo command lets you inspect images from container image registries, get images and image layers, and use signatures to create and verify files.   

Security Fix(es):  

  * go-jose: Go JOSE's Parsing Vulnerable to Denial of Service (CVE-2025-27144)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2347423" id="2347423"></bugzilla>
          <cve public="20250224" href="https://access.redhat.com/security/cve/CVE-2025-27144" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-27144</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257467001" comment="skopeo is earlier than 2:1.18.1-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149002" comment="skopeo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257467002" comment="skopeo-tests is earlier than 2:1.18.1-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149004" comment="skopeo-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257592" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7592: yggdrasil security update (Important)</title>
        <reference ref_id="CVE-2024-45336" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2024-45336.html"/>
        <reference ref_id="CVE-2025-3931" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-3931.html"/>
        <reference ref_id="RHSA-2025:7592" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7592"/>
        <reference ref_id="ALSA-2025:7592" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7592.html"/>
        <description>yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.  

Security Fix(es):  

  * yggdrasil: Local privilege escalation in yggdrasil (CVE-2025-3931)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-14"/>
          <updated date="2025-05-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2362345" id="2362345"></bugzilla>
          <cve public="20250117" href="https://www.redhat.com/security/data/cve/CVE-2024-45336.html" impact="Moderate" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2024-45336</cve>
          <cve public="20250514" href="https://www.redhat.com/security/data/cve/CVE-2025-3931.html" impact="Important" cwe="CWE-280" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-3931</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592001" comment="yggdrasil is earlier than 0:0.4.5-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592002" comment="yggdrasil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592003" comment="yggdrasil-devel is earlier than 0:0.4.5-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592004" comment="yggdrasil-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260975" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0975: glib2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-13601" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13601"/>
        <reference ref_id="RHSA-2026:0975" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0975"/>
        <reference ref_id="ALSA-2026:0975" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0975.html"/>
        <description>GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.  

Security Fix(es):  

  * glib: Integer overflow in in g_escape_uri_string() (CVE-2025-13601)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-22"/>
          <updated date="2026-01-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2416741" id="2416741"></bugzilla>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-13601" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVE-2025-13601</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975001" comment="glib2 is earlier than 0:2.80.4-10.el10_1.12"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975002" comment="glib2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975003" comment="glib2-devel is earlier than 0:2.80.4-10.el10_1.12"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975004" comment="glib2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975005" comment="glib2-tests is earlier than 0:2.80.4-10.el10_1.12"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975006" comment="glib2-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975007" comment="glib2-doc is earlier than 0:2.80.4-10.el10_1.12"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975008" comment="glib2-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975009" comment="glib2-static is earlier than 0:2.80.4-10.el10_1.12"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975010" comment="glib2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511933" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11933: sqlite security update (Important)</title>
        <reference ref_id="CVE-2025-6965" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6965"/>
        <reference ref_id="RHSA-2025:11933" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11933"/>
        <reference ref_id="ALSA-2025:11933" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11933.html"/>
        <description>SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supporting a separate database server.  

Security Fix(es):  

  * sqlite: Integer Truncation in SQLite (CVE-2025-6965)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-28"/>
          <updated date="2025-07-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2380149" id="2380149"></bugzilla>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-6965" impact="Important" cwe="CWE-197" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:L">CVE-2025-6965</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511933001" comment="sqlite is earlier than 0:3.46.1-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517002" comment="sqlite is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511933002" comment="sqlite-devel is earlier than 0:3.46.1-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517004" comment="sqlite-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511933003" comment="sqlite-libs is earlier than 0:3.46.1-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257517006" comment="sqlite-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259121" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9121: wireshark security update (Moderate)</title>
        <reference ref_id="CVE-2025-1492" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1492"/>
        <reference ref_id="RHSA-2025:9121" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9121"/>
        <reference ref_id="ALSA-2025:9121" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9121.html"/>
        <description>The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.  

Security Fix(es):  

  * wireshark: Uncontrolled Recursion in Wireshark (CVE-2025-1492)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-16"/>
          <updated date="2025-06-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2346737" id="2346737"></bugzilla>
          <cve public="20250220" href="https://access.redhat.com/security/cve/CVE-2025-1492" impact="Moderate" cwe="CWE-674" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-1492</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121001" comment="wireshark is earlier than 1:4.4.2-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121002" comment="wireshark is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121003" comment="wireshark-cli is earlier than 1:4.4.2-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121004" comment="wireshark-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121005" comment="wireshark-devel is earlier than 1:4.4.2-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121006" comment="wireshark-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257462" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7462: podman security update (Important)</title>
        <reference ref_id="CVE-2025-22869" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22869"/>
        <reference ref_id="CVE-2025-27144" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27144"/>
        <reference ref_id="RHSA-2025:7462" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7462"/>
        <reference ref_id="ALSA-2025:7462" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7462.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * go-jose: Go JOSE's Parsing Vulnerable to Denial of Service (CVE-2025-27144)
  * golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh (CVE-2025-22869)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2347423" id="2347423"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348367" id="2348367"></bugzilla>
          <cve public="20250226" href="https://access.redhat.com/security/cve/CVE-2025-22869" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-22869</cve>
          <cve public="20250224" href="https://access.redhat.com/security/cve/CVE-2025-27144" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-27144</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257462001" comment="podman is earlier than 6:5.4.0-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257462002" comment="podman-remote is earlier than 6:5.4.0-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257462003" comment="podman-tests is earlier than 6:5.4.0-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257462004" comment="podman-docker is earlier than 6:5.4.0-9.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511401" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11401: valkey security update (Important)</title>
        <reference ref_id="CVE-2025-27151" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27151"/>
        <reference ref_id="CVE-2025-32023" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32023"/>
        <reference ref_id="CVE-2025-48367" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48367"/>
        <reference ref_id="RHSA-2025:11401" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11401"/>
        <reference ref_id="ALSA-2025:11401" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11401.html"/>
        <description>Valkey is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Valkey works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Valkey also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Valkey behave like a cache. You can use Valkey from most programming languages also.  

Security Fix(es):  

  * redis: Redis Stack Buffer Overflow (CVE-2025-27151)
  * redis: Redis Unauthenticated Denial of Service (CVE-2025-48367)
  * redis: Redis Hyperloglog Out-of-Bounds Write Vulnerability (CVE-2025-32023)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-21"/>
          <updated date="2025-07-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369153" id="2369153"></bugzilla>
          <cve public="20250529" href="https://access.redhat.com/security/cve/CVE-2025-27151" impact="Moderate" cwe="(CWE-121|CWE-20)" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-27151</cve>
          <cve public="20250707" href="https://access.redhat.com/security/cve/CVE-2025-32023" impact="Important" cwe="CWE-680" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-32023</cve>
          <cve public="20250707" href="https://access.redhat.com/security/cve/CVE-2025-48367" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-48367</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511401001" comment="valkey is earlier than 0:8.0.4-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509002" comment="valkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511401002" comment="valkey-devel is earlier than 0:8.0.4-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509004" comment="valkey-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514625" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14625: mod_http2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-49630" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49630"/>
        <reference ref_id="RHSA-2025:14625" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14625"/>
        <reference ref_id="ALSA-2025:14625" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14625.html"/>
        <description>The mod_h2 Apache httpd module implements the HTTP2 protocol (h2+h2c) on top of libnghttp2 for httpd 2.4 servers.  

Security Fix(es):  

  * httpd: mod_proxy_http2: untrusted input from a client causes an assertion to fail in the Apache mod_proxy_http2 module (CVE-2025-49630)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-26"/>
          <updated date="2025-08-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2374578" id="2374578"></bugzilla>
          <cve public="20250714" href="https://access.redhat.com/security/cve/CVE-2025-49630" impact="Moderate" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-49630</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514625001" comment="mod_http2 is earlier than 0:2.0.29-2.el10_0.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514625002" comment="mod_http2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202512064" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:12064: unbound security update (Important)</title>
        <reference ref_id="CVE-2025-5994" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5994"/>
        <reference ref_id="RHSA-2025:12064" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:12064"/>
        <reference ref_id="ALSA-2025:12064" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-12064.html"/>
        <description>The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver.   

Security Fix(es):  

  * unbound: Unbound Cache poisoning (CVE-2025-5994)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-29"/>
          <updated date="2025-07-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2380949" id="2380949"></bugzilla>
          <cve public="20250716" href="https://access.redhat.com/security/cve/CVE-2025-5994" impact="Important" cwe="CWE-349" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2025-5994</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512064001" comment="python3-unbound is earlier than 0:1.20.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047002" comment="python3-unbound is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512064002" comment="unbound is earlier than 0:1.20.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047004" comment="unbound is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512064003" comment="unbound-anchor is earlier than 0:1.20.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047006" comment="unbound-anchor is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512064004" comment="unbound-dracut is earlier than 0:1.20.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047008" comment="unbound-dracut is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512064005" comment="unbound-libs is earlier than 0:1.20.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047010" comment="unbound-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202512064006" comment="unbound-devel is earlier than 0:1.20.0-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047012" comment="unbound-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257478" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7478: corosync security update (Moderate)</title>
        <reference ref_id="CVE-2025-30472" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30472"/>
        <reference ref_id="RHSA-2025:7478" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7478"/>
        <reference ref_id="ALSA-2025:7478" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7478.html"/>
        <description>The corosync packages provide the Corosync Cluster Engine and C APIs for AlmaLinux cluster software.  

Security Fix(es):  

  * corosync: Stack buffer overflow from 'orf_token_endian_convert' (CVE-2025-30472)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2354229" id="2354229"></bugzilla>
          <cve public="20250322" href="https://access.redhat.com/security/cve/CVE-2025-30472" impact="Moderate" cwe="CWE-121" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-30472</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478001" comment="corosynclib is earlier than 0:3.1.9-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478002" comment="corosynclib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478003" comment="corosync-vqsim is earlier than 0:3.1.9-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478004" comment="corosync-vqsim is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257489" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7489: php security update (Important)</title>
        <reference ref_id="CVE-2024-11235" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-11235"/>
        <reference ref_id="CVE-2025-1217" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1217"/>
        <reference ref_id="CVE-2025-1219" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1219"/>
        <reference ref_id="CVE-2025-1734" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1734"/>
        <reference ref_id="CVE-2025-1736" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1736"/>
        <reference ref_id="CVE-2025-1861" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-1861"/>
        <reference ref_id="RHSA-2025:7489" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7489"/>
        <reference ref_id="ALSA-2025:7489" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7489.html"/>
        <description>PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.  

Security Fix(es):  

  * php: Header parser of http stream wrapper does not handle folded headers (CVE-2025-1217)
  * php: Stream HTTP wrapper header check might omit basic auth header (CVE-2025-1736)
  * php: Streams HTTP wrapper does not fail for headers with invalid name and no colon (CVE-2025-1734)
  * php: libxml streams use wrong content-type header when requesting a redirected resource (CVE-2025-1219)
  * php: Stream HTTP wrapper truncates redirect location to 1024 bytes (CVE-2025-1861)
  * php: Reference counting in php_request_shutdown causes Use-After-Free (CVE-2024-11235)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2355917" id="2355917"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356041" id="2356041"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356042" id="2356042"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356043" id="2356043"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356046" id="2356046"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2357531" id="2357531"></bugzilla>
          <cve public="20250404" href="https://access.redhat.com/security/cve/CVE-2024-11235" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2024-11235</cve>
          <cve public="20250329" href="https://access.redhat.com/security/cve/CVE-2025-1217" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-1217</cve>
          <cve public="20250330" href="https://access.redhat.com/security/cve/CVE-2025-1219" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-1219</cve>
          <cve public="20250330" href="https://access.redhat.com/security/cve/CVE-2025-1734" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-1734</cve>
          <cve public="20250330" href="https://access.redhat.com/security/cve/CVE-2025-1736" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-1736</cve>
          <cve public="20250330" href="https://access.redhat.com/security/cve/CVE-2025-1861" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-1861</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489001" comment="php is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489002" comment="php is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489003" comment="php-bcmath is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489004" comment="php-bcmath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489005" comment="php-cli is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489006" comment="php-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489007" comment="php-common is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489008" comment="php-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489009" comment="php-dba is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489010" comment="php-dba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489011" comment="php-dbg is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489012" comment="php-dbg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489013" comment="php-devel is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489014" comment="php-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489015" comment="php-embedded is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489016" comment="php-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489017" comment="php-enchant is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489018" comment="php-enchant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489019" comment="php-ffi is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489020" comment="php-ffi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489021" comment="php-fpm is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489022" comment="php-fpm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489023" comment="php-gd is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489024" comment="php-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489025" comment="php-gmp is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489026" comment="php-gmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489027" comment="php-intl is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489028" comment="php-intl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489029" comment="php-ldap is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489030" comment="php-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489031" comment="php-mbstring is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489032" comment="php-mbstring is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489033" comment="php-mysqlnd is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489034" comment="php-mysqlnd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489035" comment="php-odbc is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489036" comment="php-odbc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489037" comment="php-opcache is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489038" comment="php-opcache is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489039" comment="php-pdo is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489040" comment="php-pdo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489041" comment="php-pgsql is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489042" comment="php-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489043" comment="php-process is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489044" comment="php-process is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489045" comment="php-snmp is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489046" comment="php-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489047" comment="php-soap is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489048" comment="php-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489049" comment="php-xml is earlier than 0:8.3.19-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489050" comment="php-xml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202512188" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:12188: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-8027" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8027"/>
        <reference ref_id="CVE-2025-8028" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8028"/>
        <reference ref_id="CVE-2025-8029" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8029"/>
        <reference ref_id="CVE-2025-8030" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8030"/>
        <reference ref_id="CVE-2025-8031" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8031"/>
        <reference ref_id="CVE-2025-8032" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8032"/>
        <reference ref_id="CVE-2025-8033" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8033"/>
        <reference ref_id="CVE-2025-8034" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8034"/>
        <reference ref_id="CVE-2025-8035" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8035"/>
        <reference ref_id="RHSA-2025:12188" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:12188"/>
        <reference ref_id="ALSA-2025:12188" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-12188.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Large branch table could lead to truncated instruction (CVE-2025-8028)
  * firefox: thunderbird: Memory safety bugs (CVE-2025-8035)
  * firefox: thunderbird: Incorrect URL stripping in CSP reports (CVE-2025-8031)
  * firefox: thunderbird: JavaScript engine only wrote partial return value to stack (CVE-2025-8027)
  * firefox: thunderbird: Potential user-assisted code execution in ?Copy as cURL? command (CVE-2025-8030)
  * firefox: Memory safety bugs (CVE-2025-8034)
  * firefox: thunderbird: Incorrect JavaScript state machine for generators (CVE-2025-8033)
  * firefox: thunderbird: XSLT documents could bypass CSP (CVE-2025-8032)
  * firefox: thunderbird: javascript: URLs executed on object and embed tags (CVE-2025-8029)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-29"/>
          <updated date="2025-07-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2382718" id="2382718"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382701" id="2382701"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382703" id="2382703"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382704" id="2382704"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382707" id="2382707"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382710" id="2382710"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382711" id="2382711"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382717" id="2382717"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382720" id="2382720"></bugzilla>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8027" impact="Important" cwe="CWE-457" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8027</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8028" impact="Important" cwe="CWE-1332" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8028</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8029" impact="Moderate" cwe="CWE-80" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8029</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8030" impact="Moderate" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8030</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8031" impact="Moderate" cwe="CWE-276" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8031</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8032" impact="Moderate" cwe="CWE-693" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-8032</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8033" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-8033</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8034" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8034</cve>
          <cve public="20250722" href="https://access.redhat.com/security/cve/CVE-2025-8035" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8035</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512188001" comment="thunderbird is earlier than 0:128.13.0-3.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259328" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9328: libblockdev security update (Important)</title>
        <reference ref_id="CVE-2025-6019" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6019"/>
        <reference ref_id="RHSA-2025:9328" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9328"/>
        <reference ref_id="ALSA-2025:9328" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9328.html"/>
        <description>The libblockdev packages provide a C library with GObject introspection support used for low-level operations on block devices. The library serves as a thin wrapper around plug-ins for specific functionality, such as LVM, Btrfs, LUKS, or MD RAID.  

Security Fix(es):  

  * libblockdev: LPE from allow_active to root in libblockdev via udisks (CVE-2025-6019)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-23"/>
          <updated date="2025-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2370051" id="2370051"></bugzilla>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-6019" impact="Important" cwe="CWE-250" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-6019</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328001" comment="libblockdev is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006047" comment="libblockdev is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006048" comment="libblockdev is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328002" comment="libblockdev-crypto is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006069" comment="libblockdev-crypto is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006070" comment="libblockdev-crypto is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328003" comment="libblockdev-dm is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006027" comment="libblockdev-dm is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006028" comment="libblockdev-dm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328004" comment="libblockdev-fs is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006013" comment="libblockdev-fs is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006014" comment="libblockdev-fs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328005" comment="libblockdev-loop is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006001" comment="libblockdev-loop is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006002" comment="libblockdev-loop is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328006" comment="libblockdev-lvm is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006055" comment="libblockdev-lvm is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006056" comment="libblockdev-lvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328007" comment="libblockdev-lvm-dbus is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006011" comment="libblockdev-lvm-dbus is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006012" comment="libblockdev-lvm-dbus is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328008" comment="libblockdev-mdraid is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006017" comment="libblockdev-mdraid is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006018" comment="libblockdev-mdraid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328009" comment="libblockdev-mpath is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006035" comment="libblockdev-mpath is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006036" comment="libblockdev-mpath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328010" comment="libblockdev-nvdimm is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006041" comment="libblockdev-nvdimm is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006042" comment="libblockdev-nvdimm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328011" comment="libblockdev-nvme is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006025" comment="libblockdev-nvme is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006026" comment="libblockdev-nvme is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328012" comment="libblockdev-part is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006021" comment="libblockdev-part is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006022" comment="libblockdev-part is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328013" comment="libblockdev-plugins-all is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006029" comment="libblockdev-plugins-all is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006030" comment="libblockdev-plugins-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328014" comment="libblockdev-smart is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006067" comment="libblockdev-smart is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006068" comment="libblockdev-smart is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328015" comment="libblockdev-smartmontools is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006019" comment="libblockdev-smartmontools is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006020" comment="libblockdev-smartmontools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328016" comment="libblockdev-swap is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006043" comment="libblockdev-swap is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006044" comment="libblockdev-swap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328017" comment="libblockdev-tools is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006049" comment="libblockdev-tools is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006050" comment="libblockdev-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328018" comment="libblockdev-utils is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006045" comment="libblockdev-utils is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006046" comment="libblockdev-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328019" comment="python3-blockdev is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006009" comment="python3-blockdev is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006010" comment="python3-blockdev is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259328020" comment="libblockdev-s390 is earlier than 0:3.2.0-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006073" comment="libblockdev-s390 is earlier than 0:3.2.0-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000006074" comment="libblockdev-s390 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511888" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11888: icu security update (Moderate)</title>
        <reference ref_id="CVE-2025-5222" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5222"/>
        <reference ref_id="RHSA-2025:11888" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11888"/>
        <reference ref_id="ALSA-2025:11888" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11888.html"/>
        <description>The International Components for Unicode (ICU) library provides robust and full-featured Unicode services.  

Security Fix(es):  

  * icu: Stack buffer overflow in the SRBRoot::addTag function (CVE-2025-5222)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-28"/>
          <updated date="2025-07-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2368600" id="2368600"></bugzilla>
          <cve public="20241114" href="https://access.redhat.com/security/cve/CVE-2025-5222" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-5222</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511888001" comment="icu is earlier than 0:74.2-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511888002" comment="icu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511888003" comment="libicu is earlier than 0:74.2-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511888004" comment="libicu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511888005" comment="libicu-devel is earlier than 0:74.2-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511888006" comment="libicu-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257466" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7466: delve and golang security update (Moderate)</title>
        <reference ref_id="CVE-2024-45336" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-45336"/>
        <reference ref_id="CVE-2024-45341" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-45341"/>
        <reference ref_id="CVE-2025-22866" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22866"/>
        <reference ref_id="RHSA-2025:7466" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7466"/>
        <reference ref_id="ALSA-2025:7466" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7466.html"/>
        <description>Delve is a debugger for the Go programming language. The goal of the project is to provide a simple, full featured debugging tool for Go. Delve should be easy to invoke and easy to use. Chances are if you're using a debugger, things aren't going your way. With that in mind, Delve should stay out of your way as much as possible.  

Security Fix(es):  

  * golang: crypto/x509: crypto/x509: usage of IPv6 zone IDs can bypass URI name constraints (CVE-2024-45341)
  * golang: net/[http:](http:) net/[http:](http:) sensitive headers incorrectly sent after cross-domain redirect (CVE-2024-45336)
  * crypto/internal/nistec: golang: Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec (CVE-2025-22866)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2341750" id="2341750"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2341751" id="2341751"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2344219" id="2344219"></bugzilla>
          <cve public="20250117" href="https://access.redhat.com/security/cve/CVE-2024-45336" impact="Moderate" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2024-45336</cve>
          <cve public="20250117" href="https://access.redhat.com/security/cve/CVE-2024-45341" impact="Low" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2024-45341</cve>
          <cve public="20250206" href="https://access.redhat.com/security/cve/CVE-2025-22866" impact="Moderate" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-22866</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466001" comment="delve is earlier than 0:1.24.1-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259317002" comment="delve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466002" comment="go-toolset is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466003" comment="golang is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466004" comment="golang-bin is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466005" comment="golang-docs is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466006" comment="golang-misc is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466007" comment="golang-src is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257466008" comment="golang-tests is earlier than 0:1.23.7-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510140" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10140: python3.12 security update (Important)</title>
        <reference ref_id="CVE-2024-12718" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-12718"/>
        <reference ref_id="CVE-2025-4138" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4138"/>
        <reference ref_id="CVE-2025-4330" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4330"/>
        <reference ref_id="CVE-2025-4435" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4435"/>
        <reference ref_id="CVE-2025-4517" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4517"/>
        <reference ref_id="RHSA-2025:10140" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10140"/>
        <reference ref_id="ALSA-2025:10140" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10140.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * cpython: Tarfile extracts filtered members when errorlevel=0 (CVE-2025-4435)
  * cpython: Bypass extraction filter to modify file metadata outside extraction directory (CVE-2024-12718)
  * cpython: Extraction filter bypass for linking outside extraction directory (CVE-2025-4330)
  * python: cpython: Arbitrary writes via tarfile realpath overflow (CVE-2025-4517)
  * cpython: python: Bypassing extraction filter to create symlinks to arbitrary targets outside extraction directory (CVE-2025-4138)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-01"/>
          <updated date="2025-07-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2370010" id="2370010"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2370013" id="2370013"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2370014" id="2370014"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2370016" id="2370016"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2372426" id="2372426"></bugzilla>
          <cve public="20250603" href="https://access.redhat.com/security/cve/CVE-2024-12718" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L">CVE-2024-12718</cve>
          <cve public="20250603" href="https://access.redhat.com/security/cve/CVE-2025-4138" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2025-4138</cve>
          <cve public="20250603" href="https://access.redhat.com/security/cve/CVE-2025-4330" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N">CVE-2025-4330</cve>
          <cve public="20250603" href="https://access.redhat.com/security/cve/CVE-2025-4435" impact="Moderate" cwe="CWE-706" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2025-4435</cve>
          <cve public="20250603" href="https://access.redhat.com/security/cve/CVE-2025-4517" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L">CVE-2025-4517</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140001" comment="python3 is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140003" comment="python3-devel is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140005" comment="python3-libs is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140007" comment="python3-tkinter is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140009" comment="python3-debug is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140011" comment="python3-idle is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140013" comment="python3-test is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140015" comment="python-unversioned-command is earlier than 0:3.12.9-2.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514417" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14417: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-9179" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9179"/>
        <reference ref_id="CVE-2025-9180" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9180"/>
        <reference ref_id="CVE-2025-9181" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9181"/>
        <reference ref_id="CVE-2025-9182" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9182"/>
        <reference ref_id="CVE-2025-9185" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9185"/>
        <reference ref_id="RHSA-2025:14417" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14417"/>
        <reference ref_id="ALSA-2025:14417" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14417.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Denial-of-service due to out-of-memory in the Graphics: WebRender component (CVE-2025-9182)
  * thunderbird: firefox: Sandbox escape due to invalid pointer in the Audio/Video: GMP component (CVE-2025-9179)
  * thunderbird: firefox: Same-origin policy bypass in the Graphics: Canvas2D component (CVE-2025-9180)
  * thunderbird: firefox: Uninitialized memory in the JavaScript Engine component (CVE-2025-9181)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 115.27, Firefox ESR 128.14, Thunderbird ESR 128.14, Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142 (CVE-2025-9185)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-25"/>
          <updated date="2025-08-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2389575" id="2389575"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389580" id="2389580"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389581" id="2389581"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389583" id="2389583"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389584" id="2389584"></bugzilla>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9179" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9179</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9180" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9180</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9181" impact="Moderate" cwe="CWE-665" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-9181</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9182" impact="Low" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-9182</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9185" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9185</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514417001" comment="firefox is earlier than 0:128.14.0-2.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257510" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7510: libarchive security update (Moderate)</title>
        <reference ref_id="CVE-2024-57970" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57970"/>
        <reference ref_id="RHSA-2025:7510" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7510"/>
        <reference ref_id="ALSA-2025:7510" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7510.html"/>
        <description>The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers.  

Security Fix(es):  

  * libarchive: heap buffer over-read in header_gnu_longlink (CVE-2024-57970)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2345954" id="2345954"></bugzilla>
          <cve public="20250216" href="https://access.redhat.com/security/cve/CVE-2024-57970" impact="Moderate" cwe="CWE-126" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2024-57970</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257510001" comment="bsdtar is earlier than 0:3.7.7-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420002" comment="bsdtar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257510002" comment="libarchive is earlier than 0:3.7.7-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420004" comment="libarchive is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257510003" comment="libarchive-devel is earlier than 0:3.7.7-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420006" comment="libarchive-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514510" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14510: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-37914" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37914"/>
        <reference ref_id="CVE-2025-38200" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38200"/>
        <reference ref_id="CVE-2025-38417" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38417"/>
        <reference ref_id="RHSA-2025:14510" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14510"/>
        <reference ref_id="ALSA-2025:14510" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14510.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: net_sched: ets: Fix double list add in class with netem as child qdisc (CVE-2025-37914)
  * kernel: i40e: fix MMIO write access to an invalid page in i40e_clear_hw (CVE-2025-38200)
  * kernel: ice: fix eswitch code memory leak in reset scenario (CVE-2025-38417)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-25"/>
          <updated date="2025-08-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367500" id="2367500"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376392" id="2376392"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383463" id="2383463"></bugzilla>
          <cve public="20250520" href="https://access.redhat.com/security/cve/CVE-2025-37914" impact="Moderate" cwe="CWE-123" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-37914</cve>
          <cve public="20250704" href="https://access.redhat.com/security/cve/CVE-2025-38200" impact="Moderate" cwe="CWE-191" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38200</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38417" impact="Important" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38417</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510001" comment="kernel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510002" comment="kernel-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510003" comment="kernel-debug is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510004" comment="kernel-debug-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510011" comment="kernel-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510013" comment="kernel-rt is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510014" comment="kernel-headers is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510015" comment="kernel-tools is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510016" comment="kernel-64k-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510017" comment="libperf is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510018" comment="kernel-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510019" comment="kernel-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510020" comment="kernel-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510021" comment="kernel-rt-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510022" comment="kernel-rt-debug is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510023" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510024" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510025" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510026" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510027" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510028" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510029" comment="kernel-rt-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510030" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510031" comment="kernel-rt-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510032" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510033" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510034" comment="kernel-tools-libs is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510035" comment="kernel-uki-virt is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510036" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510037" comment="perf is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510038" comment="python3-perf is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510039" comment="rtla is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510040" comment="rv is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510041" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510042" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510043" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510044" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510045" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510046" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510047" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510048" comment="kernel-64k is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510049" comment="kernel-64k-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510050" comment="kernel-64k-debug is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510051" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510052" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510053" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510054" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510055" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510056" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510057" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510058" comment="kernel-64k-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510059" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510060" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510061" comment="kernel-rt-64k is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510062" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510063" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510064" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510065" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510066" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510067" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510068" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510069" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510070" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510071" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510072" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510073" comment="kernel-cross-headers is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510074" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514510076" comment="kernel-doc is earlier than 0:6.12.0-55.29.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259418" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9418: krb5 security update (Moderate)</title>
        <reference ref_id="CVE-2025-3576" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-3576"/>
        <reference ref_id="RHSA-2025:9418" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9418"/>
        <reference ref_id="ALSA-2025:9418" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9418.html"/>
        <description>Kerberos is a network authentication system, which can improve the security of your network by eliminating the insecure practice of sending passwords over the network in unencrypted form. It allows clients and servers to authenticate to each other with the help of a trusted third party, the Kerberos key distribution center (KDC).  

Security Fix(es):  

  * krb5: Kerberos RC4-HMAC-MD5 Checksum Vulnerability Enabling Message Spoofing via MD5 Collisions (CVE-2025-3576)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-24"/>
          <updated date="2025-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359465" id="2359465"></bugzilla>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-3576" impact="Moderate" cwe="CWE-328" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2025-3576</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418001" comment="krb5-pkinit is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418002" comment="krb5-pkinit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418003" comment="krb5-server is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418004" comment="krb5-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418005" comment="krb5-server-ldap is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418006" comment="krb5-server-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418007" comment="krb5-workstation is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418008" comment="krb5-workstation is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418009" comment="libkadm5 is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418010" comment="libkadm5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418011" comment="krb5-devel is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418012" comment="krb5-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418013" comment="krb5-libs is earlier than 0:1.21.3-8.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259418014" comment="krb5-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20258341" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:8341: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-5263" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5263.html"/>
        <reference ref_id="CVE-2025-5264" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5264.html"/>
        <reference ref_id="CVE-2025-5266" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5266.html"/>
        <reference ref_id="CVE-2025-5267" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5267.html"/>
        <reference ref_id="CVE-2025-5268" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5268.html"/>
        <reference ref_id="CVE-2025-5269" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5269.html"/>
        <reference ref_id="CVE-2025-5283" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-5283.html"/>
        <reference ref_id="RHSA-2025:8341" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:8341"/>
        <reference ref_id="ALSA-2025:8341" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-8341.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Clickjacking vulnerability could have led to leaking saved payment card details (CVE-2025-5267)
  * firefox: thunderbird: Potential local code execution in ?Copy as cURL? command (CVE-2025-5264)
  * firefox: thunderbird: Memory safety bugs (CVE-2025-5268)
  * firefox: thunderbird: Script element events leaked cross-origin resource status (CVE-2025-5266)
  * firefox: thunderbird: Error handling for script execution was incorrectly isolated from web content (CVE-2025-5263)
  * firefox: thunderbird: Memory safety bug (CVE-2025-5269)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-02"/>
          <updated date="2025-06-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2368757" id="2368757"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368750" id="2368750"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368751" id="2368751"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368752" id="2368752"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368755" id="2368755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2368756" id="2368756"></bugzilla>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5263.html" impact="Moderate" cwe="CWE-829" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5263</cve>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5264.html" impact="Moderate" cwe="CWE-116" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5264</cve>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5266.html" impact="Moderate" cwe="CWE-829" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5266</cve>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5267.html" impact="Low" cwe="CWE-1021" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-5267</cve>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5268.html" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5268</cve>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5269.html" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-5269</cve>
          <cve public="20250527" href="https://www.redhat.com/security/data/cve/CVE-2025-5283.html" impact="Important" cwe="CWE-415" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2025-5283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258341001" comment="firefox is earlier than 0:128.11.0-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259190" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9190: ipa security update (Important)</title>
        <reference ref_id="CVE-2025-4404" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4404"/>
        <reference ref_id="RHSA-2025:9190" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9190"/>
        <reference ref_id="ALSA-2025:9190" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9190.html"/>
        <description>AlmaLinux Identity Management (IdM) is a centralized authentication, identity management, and authorization solution for both traditional and cloud-based enterprise environments.  

Security Fix(es):  

  * freeIPA: idm: Privilege escalation from host to domain admin in FreeIPA (CVE-2025-4404)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2364606" id="2364606"></bugzilla>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-4404" impact="Important" cwe="CWE-1220" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H">CVE-2025-4404</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190001" comment="ipa-client is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190002" comment="ipa-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190003" comment="ipa-client-encrypted-dns is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190004" comment="ipa-client-encrypted-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190005" comment="ipa-client-epn is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190006" comment="ipa-client-epn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190007" comment="ipa-client-samba is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190008" comment="ipa-client-samba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190009" comment="ipa-server is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190010" comment="ipa-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190011" comment="ipa-server-encrypted-dns is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190012" comment="ipa-server-encrypted-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190013" comment="ipa-server-trust-ad is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190014" comment="ipa-server-trust-ad is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190015" comment="ipa-client-common is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190016" comment="ipa-client-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190017" comment="ipa-common is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190018" comment="ipa-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190019" comment="ipa-selinux is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190020" comment="ipa-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190021" comment="ipa-selinux-luna is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190022" comment="ipa-selinux-luna is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190023" comment="ipa-selinux-nfast is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190024" comment="ipa-selinux-nfast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190025" comment="ipa-server-common is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190026" comment="ipa-server-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190027" comment="ipa-server-dns is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190028" comment="ipa-server-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190029" comment="python3-ipaclient is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190030" comment="python3-ipaclient is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190031" comment="python3-ipalib is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190032" comment="python3-ipalib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190033" comment="python3-ipaserver is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190034" comment="python3-ipaserver is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190035" comment="python3-ipatests is earlier than 0:4.12.2-15.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190036" comment="python3-ipatests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202511428" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:11428: kernel security update (Important)</title>
        <reference ref_id="CVE-2024-57980" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57980"/>
        <reference ref_id="CVE-2024-58002" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58002"/>
        <reference ref_id="CVE-2025-21905" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21905"/>
        <reference ref_id="CVE-2025-37958" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37958"/>
        <reference ref_id="CVE-2025-38089" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38089"/>
        <reference ref_id="RHSA-2025:11428" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:11428"/>
        <reference ref_id="ALSA-2025:11428" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-11428.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: media: uvcvideo: Remove dangling pointers (CVE-2024-58002)
  * kernel: media: uvcvideo: Fix double free in error path (CVE-2024-57980)
  * kernel: wifi: iwlwifi: limit printed string from FW file (CVE-2025-21905)
  * kernel: mm/huge_memory: fix dereferencing invalid pmd migration entry (CVE-2025-37958)
  * kernel: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error (CVE-2025-38089)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-21"/>
          <updated date="2025-07-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2348513" id="2348513"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348599" id="2348599"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356613" id="2356613"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367572" id="2367572"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2375529" id="2375529"></bugzilla>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57980" impact="Moderate" cwe="CWE-415" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57980</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58002" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2024-58002</cve>
          <cve public="20250401" href="https://access.redhat.com/security/cve/CVE-2025-21905" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21905</cve>
          <cve public="20250520" href="https://access.redhat.com/security/cve/CVE-2025-37958" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-37958</cve>
          <cve public="20250630" href="https://access.redhat.com/security/cve/CVE-2025-38089" impact="Important" cwe="CWE-99" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H">CVE-2025-38089</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428001" comment="kernel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428002" comment="kernel-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428003" comment="kernel-debug is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428004" comment="kernel-debug-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428010" comment="kernel-tools is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428011" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428012" comment="kernel-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428013" comment="kernel-devel-matched is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428014" comment="kernel-headers is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428015" comment="kernel-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428016" comment="kernel-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428017" comment="kernel-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428018" comment="kernel-rt is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428019" comment="kernel-rt-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428020" comment="kernel-rt-debug is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428023" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428024" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428025" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428026" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428027" comment="kernel-rt-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428028" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428029" comment="kernel-rt-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428030" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428031" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428035" comment="perf is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428036" comment="python3-perf is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428037" comment="rtla is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428038" comment="rv is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428046" comment="kernel-64k is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428047" comment="kernel-64k-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428074" comment="libperf is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511428076" comment="kernel-doc is earlier than 0:6.12.0-55.22.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510873" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10873: java-21-openjdk security update (Important)</title>
        <reference ref_id="CVE-2025-30749" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30749"/>
        <reference ref_id="CVE-2025-30754" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30754"/>
        <reference ref_id="CVE-2025-50059" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50059"/>
        <reference ref_id="CVE-2025-50106" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50106"/>
        <reference ref_id="RHSA-2025:10873" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10873"/>
        <reference ref_id="ALSA-2025:10873" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10873.html"/>
        <description>The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Better Glyph drawing (CVE-2025-30749)
  * JDK: Enhance TLS protocol support (CVE-2025-30754)
  * JDK: Improve HTTP client header handling (CVE-2025-50059)
  * JDK: Better Glyph drawing redux (CVE-2025-50106)


Bug Fix(es):  

  * In AlmaLinuxand AlmaLinux systems, the default graphical display system is Wayland. The use of Wayland in these systems causes a failure in the traditional X11 method that java.awt.Robot uses to take a screen capture, producing a blank image. With this update, the RPM now recommends installing the PipeWire package, which the JDK can use to take screen captures in Wayland systems (AlmaLinux-102683, AlmaLinux-102684, AlmaLinux-102685)
  * On NUMA systems, the operating system can choose to migrate a task from one NUMA node to another. In the G1 garbage collector, G1AllocRegion objects are associated with NUMA nodes. The G1Allocator code assumes that obtaining the G1AllocRegion object for the current thread is sufficient, but OS scheduling can lead to arbitrary changes in the NUMA-to-thread association. This can cause crashes when the G1AllocRegion being used changes mid-operation. This update resolves this issue by always using the same NUMA node and associated G1AllocRegion object throughout an operation. (AlmaLinux-90307, AlmaLinux-90308, AlmaLinux-90311)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-16"/>
          <updated date="2025-07-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-30749" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2025-30749</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-30754" impact="Moderate" cwe="CWE-325" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2025-30754</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50059" impact="Important" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N">CVE-2025-50059</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50106" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2025-50106</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873001" comment="java-21-openjdk is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508002" comment="java-21-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873002" comment="java-21-openjdk-demo is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508004" comment="java-21-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873003" comment="java-21-openjdk-devel is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508006" comment="java-21-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873004" comment="java-21-openjdk-headless is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508008" comment="java-21-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873005" comment="java-21-openjdk-javadoc is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508010" comment="java-21-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873006" comment="java-21-openjdk-javadoc-zip is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508012" comment="java-21-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873007" comment="java-21-openjdk-jmods is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508014" comment="java-21-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873008" comment="java-21-openjdk-src is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508016" comment="java-21-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873009" comment="java-21-openjdk-static-libs is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508018" comment="java-21-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873010" comment="java-21-openjdk-demo-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508020" comment="java-21-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873011" comment="java-21-openjdk-demo-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508022" comment="java-21-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873012" comment="java-21-openjdk-devel-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508024" comment="java-21-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873013" comment="java-21-openjdk-devel-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508026" comment="java-21-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873014" comment="java-21-openjdk-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508028" comment="java-21-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873015" comment="java-21-openjdk-headless-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508030" comment="java-21-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873016" comment="java-21-openjdk-headless-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508032" comment="java-21-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873017" comment="java-21-openjdk-jmods-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508034" comment="java-21-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873018" comment="java-21-openjdk-jmods-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508036" comment="java-21-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873019" comment="java-21-openjdk-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508038" comment="java-21-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873020" comment="java-21-openjdk-src-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508040" comment="java-21-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873021" comment="java-21-openjdk-src-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508042" comment="java-21-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873022" comment="java-21-openjdk-static-libs-fastdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508044" comment="java-21-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510873023" comment="java-21-openjdk-static-libs-slowdebug is earlier than 1:21.0.8.0.9-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508046" comment="java-21-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257502" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7502: nodejs22 security update (Moderate)</title>
        <reference ref_id="CVE-2025-31498" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-31498"/>
        <reference ref_id="RHSA-2025:7502" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7502"/>
        <reference ref_id="ALSA-2025:7502" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7502.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime \ for easily building fast, scalable network applications. \ Node.js uses an event-driven, non-blocking I/O model that \ makes it lightweight and efficient, perfect for data-intensive \ real-time applications that run across distributed devices.  

Security Fix(es):  

  * c-ares: c-ares has a use-after-free in read_answers() (CVE-2025-31498)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358271" id="2358271"></bugzilla>
          <cve public="20250408" href="https://access.redhat.com/security/cve/CVE-2025-31498" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-31498</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257502001" comment="nodejs is earlier than 1:22.15.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493002" comment="nodejs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257502002" comment="nodejs-devel is earlier than 1:22.15.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493004" comment="nodejs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257502003" comment="nodejs-full-i18n is earlier than 1:22.15.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493006" comment="nodejs-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257502004" comment="nodejs-libs is earlier than 1:22.15.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493008" comment="nodejs-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257502005" comment="nodejs-npm is earlier than 1:10.9.2-1.22.15.0.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493010" comment="nodejs-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257502006" comment="nodejs-docs is earlier than 1:22.15.0-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493012" comment="nodejs-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515095" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15095: httpd security update (Moderate)</title>
        <reference ref_id="CVE-2024-47252" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-47252"/>
        <reference ref_id="CVE-2025-23048" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-23048"/>
        <reference ref_id="CVE-2025-49812" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49812"/>
        <reference ref_id="RHSA-2025:15095" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15095"/>
        <reference ref_id="ALSA-2025:15095" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15095.html"/>
        <description>The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server.  

Security Fix(es):  

  * httpd: insufficient escaping of user-supplied data in mod_ssl (CVE-2024-47252)
  * httpd: mod_ssl: access control bypass by trusted clients is possible using TLS 1.3 session resumption (CVE-2025-23048)
  * httpd: HTTP Session Hijack via a TLS upgrade (CVE-2025-49812)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-02"/>
          <updated date="2025-09-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2374571" id="2374571"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2374576" id="2374576"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2374580" id="2374580"></bugzilla>
          <cve public="20250714" href="https://access.redhat.com/security/cve/CVE-2024-47252" impact="Moderate" cwe="CWE-117" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2024-47252</cve>
          <cve public="20250714" href="https://access.redhat.com/security/cve/CVE-2025-23048" impact="Moderate" cwe="CWE-284" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-23048</cve>
          <cve public="20250714" href="https://access.redhat.com/security/cve/CVE-2025-49812" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-49812</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095001" comment="mod_lua is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095002" comment="mod_lua is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095003" comment="mod_proxy_html is earlier than 1:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095004" comment="mod_proxy_html is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095005" comment="mod_session is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095006" comment="mod_session is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095007" comment="mod_ssl is earlier than 1:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095008" comment="mod_ssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095009" comment="httpd is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095010" comment="httpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095011" comment="httpd-core is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095012" comment="httpd-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095013" comment="httpd-devel is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095014" comment="httpd-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095015" comment="httpd-tools is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095016" comment="httpd-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095017" comment="mod_ldap is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095018" comment="mod_ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095019" comment="httpd-filesystem is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095020" comment="httpd-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095021" comment="httpd-manual is earlier than 0:2.4.63-1.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095022" comment="httpd-manual is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20257505" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:7505: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2025-2784" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-2784"/>
        <reference ref_id="CVE-2025-32906" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32906"/>
        <reference ref_id="CVE-2025-32908" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32908"/>
        <reference ref_id="CVE-2025-32912" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32912"/>
        <reference ref_id="CVE-2025-32914" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32914"/>
        <reference ref_id="CVE-2025-46421" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46421"/>
        <reference ref_id="RHSA-2025:7505" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:7505"/>
        <reference ref_id="ALSA-2025:7505" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-7505.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Heap buffer over-read in `skip_insignificant_space` when sniffing content (CVE-2025-2784)
  * libsoup: Out of bounds reads in soup_headers_parse_request() (CVE-2025-32906)
  * libsoup: Denial of service on libsoup through HTTP/2 server (CVE-2025-32908)
  * libsoup: NULL pointer dereference in client when server omits the "nonce" parameter in an Unauthorized response with Digest authentication (CVE-2025-32912)
  * libsoup: OOB Read on libsoup through function "soup_multipart_new_from_message" in soup-multipart.c leads to crash or exit of process (CVE-2025-32914)
  * libsoup: Information disclosure may leads libsoup client sends Authorization header to a different host when being redirected by a server (CVE-2025-46421)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-05-13"/>
          <updated date="2025-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2354669" id="2354669"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359341" id="2359341"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359343" id="2359343"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359356" id="2359356"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359358" id="2359358"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2361962" id="2361962"></bugzilla>
          <cve public="20250325" href="https://access.redhat.com/security/cve/CVE-2025-2784" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-2784</cve>
          <cve public="20250414" href="https://access.redhat.com/security/cve/CVE-2025-32906" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-32906</cve>
          <cve public="20250414" href="https://access.redhat.com/security/cve/CVE-2025-32908" impact="Important" cwe="CWE-115" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-32908</cve>
          <cve public="20250414" href="https://access.redhat.com/security/cve/CVE-2025-32912" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-32912</cve>
          <cve public="20250414" href="https://access.redhat.com/security/cve/CVE-2025-32914" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H">CVE-2025-32914</cve>
          <cve public="20250424" href="https://access.redhat.com/security/cve/CVE-2025-46421" impact="Moderate" cwe="CWE-497" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2025-46421</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257505001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257505002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257505003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259166" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9166: apache-commons-beanutils security update (Important)</title>
        <reference ref_id="CVE-2025-48734" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-48734"/>
        <reference ref_id="RHSA-2025:9166" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9166"/>
        <reference ref_id="ALSA-2025:9166" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9166.html"/>
        <description>The Apache Commons BeanUtils library provides utility methods for accessing and modifying properties of arbitrary JavaBeans.  

Security Fix(es):  

  * commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default (CVE-2025-48734)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-17"/>
          <updated date="2025-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2368956" id="2368956"></bugzilla>
          <cve public="20250528" href="https://access.redhat.com/security/cve/CVE-2025-48734" impact="Important" cwe="CWE-284" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L">CVE-2025-48734</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259166001" comment="apache-commons-beanutils is earlier than 0:1.9.4-21.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259166002" comment="apache-commons-beanutils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259166003" comment="apache-commons-beanutils-javadoc is earlier than 0:1.9.4-21.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259166004" comment="apache-commons-beanutils-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514592" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14592: aide security update (Important)</title>
        <reference ref_id="CVE-2025-54389" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-54389"/>
        <reference ref_id="RHSA-2025:14592" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14592"/>
        <reference ref_id="ALSA-2025:14592" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14592.html"/>
        <description>Advanced Intrusion Detection Environment (AIDE) is a utility that creates a database of files on the system, and then uses that database to ensure file integrity and detect system intrusions.  

Security Fix(es):  

  * aide: improper output neutralization enables bypassing (CVE-2025-54389)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-26"/>
          <updated date="2025-08-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2388019" id="2388019"></bugzilla>
          <cve public="20250814" href="https://access.redhat.com/security/cve/CVE-2025-54389" impact="Important" cwe="CWE-117" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N">CVE-2025-54389</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514592001" comment="aide is earlier than 0:0.18.6-8.el10_0.2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514592002" comment="aide is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515701" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15701: cups security update (Important)</title>
        <reference ref_id="CVE-2025-58060" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58060"/>
        <reference ref_id="CVE-2025-58364" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58364"/>
        <reference ref_id="RHSA-2025:15701" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15701"/>
        <reference ref_id="ALSA-2025:15701" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15701.html"/>
        <description>The Common UNIX Printing System (CUPS) provides a portable printing layer for  
Linux, UNIX, and similar operating systems.  

Security Fix(es):  

  * cups: Null Pointer Dereference in CUPS ipp_read_io() Leading to Remote DoS (CVE-2025-58364)
  * cups: Authentication Bypass in CUPS Authorization Handling (CVE-2025-58060)


For more details about the security issue(s), including the impact, a CVSS  
score, acknowledgments, and other related information, refer to the CVE page(s)  
listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-11"/>
          <updated date="2025-09-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2392595" id="2392595"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393078" id="2393078"></bugzilla>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-58060" impact="Important" cwe="CWE-287" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H">CVE-2025-58060</cve>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-58364" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58364</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701001" comment="cups is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701002" comment="cups is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701003" comment="cups-client is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701004" comment="cups-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701005" comment="cups-devel is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701006" comment="cups-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701007" comment="cups-ipptool is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701008" comment="cups-ipptool is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701009" comment="cups-libs is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701010" comment="cups-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701011" comment="cups-lpd is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701012" comment="cups-lpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701013" comment="cups-printerapp is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701014" comment="cups-printerapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701015" comment="cups-filesystem is earlier than 1:2.4.10-11.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701016" comment="cups-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516904" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16904: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38396" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38396"/>
        <reference ref_id="CVE-2025-38523" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38523"/>
        <reference ref_id="CVE-2025-38527" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38527"/>
        <reference ref_id="CVE-2025-39682" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39682"/>
        <reference ref_id="CVE-2025-39694" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39694"/>
        <reference ref_id="CVE-2025-39698" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39698"/>
        <reference ref_id="RHSA-2025:16904" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16904"/>
        <reference ref_id="ALSA-2025:16904" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16904.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass (CVE-2025-38396)
  * kernel: smb: client: fix use-after-free in cifs_oplock_break (CVE-2025-38527)
  * kernel: cifs: Fix the smbd_response slab to allow usercopy (CVE-2025-38523)
  * kernel: tls: fix handling of zero-length records on the rx_list (CVE-2025-39682)
  * kernel: io_uring/futex: ensure io_futex_wait() cleans up properly on failure (CVE-2025-39698)
  * kernel: s390/sclp: Fix SCCB present check (CVE-2025-39694)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-29"/>
          <updated date="2025-09-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2383441" id="2383441"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2388928" id="2388928"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2388948" id="2388948"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393511" id="2393511"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393519" id="2393519"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393534" id="2393534"></bugzilla>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38396" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N">CVE-2025-38396</cve>
          <cve public="20250816" href="https://access.redhat.com/security/cve/CVE-2025-38523" impact="Moderate" cwe="CWE-1188" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38523</cve>
          <cve public="20250816" href="https://access.redhat.com/security/cve/CVE-2025-38527" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38527</cve>
          <cve public="20250905" href="https://access.redhat.com/security/cve/CVE-2025-39682" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39682</cve>
          <cve public="20250905" href="https://access.redhat.com/security/cve/CVE-2025-39694" impact="Moderate" cwe="CWE-1285" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39694</cve>
          <cve public="20250905" href="https://access.redhat.com/security/cve/CVE-2025-39698" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39698</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904001" comment="kernel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904002" comment="kernel-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904003" comment="kernel-debug is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904004" comment="kernel-debug-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904011" comment="kernel-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904013" comment="kernel-headers is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904014" comment="kernel-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904015" comment="kernel-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904017" comment="kernel-rt is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904018" comment="kernel-rt-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904031" comment="kernel-tools is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904035" comment="perf is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904036" comment="python3-perf is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904037" comment="rtla is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904038" comment="rv is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904046" comment="kernel-64k is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904047" comment="kernel-64k-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904074" comment="libperf is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516904076" comment="kernel-doc is earlier than 0:6.12.0-55.37.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514826" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14826: postgresql16 security update (Important)</title>
        <reference ref_id="CVE-2025-8714" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8714"/>
        <reference ref_id="CVE-2025-8715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8715"/>
        <reference ref_id="RHSA-2025:14826" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14826"/>
        <reference ref_id="ALSA-2025:14826" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14826.html"/>
        <description>PostgreSQL is an advanced Object-Relational database management system (DBMS). The base postgresql package contains the client programs that you'll need to access a PostgreSQL DBMS server, as well as HTML documentation for the whole system. These client programs can be located on the same machine as the PostgreSQL server, or on a remote machine that accesses a PostgreSQL server over a network connection. The PostgreSQL server can be found in the postgresql-server sub-package.  

Security Fix(es):  

  * postgresql: PostgreSQL executes arbitrary code in restore operation (CVE-2025-8715)
  * postgresql: PostgreSQL code execution in restore operation (CVE-2025-8714)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-28"/>
          <updated date="2025-08-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2388551" id="2388551"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2388553" id="2388553"></bugzilla>
          <cve public="20250814" href="https://access.redhat.com/security/cve/CVE-2025-8714" impact="Important" cwe="CWE-829" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8714</cve>
          <cve public="20250814" href="https://access.redhat.com/security/cve/CVE-2025-8715" impact="Important" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-8715</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826001" comment="postgresql is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826002" comment="postgresql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826003" comment="postgresql-contrib is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826004" comment="postgresql-contrib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826005" comment="postgresql-docs is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826006" comment="postgresql-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826007" comment="postgresql-plperl is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826008" comment="postgresql-plperl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826009" comment="postgresql-plpython3 is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826010" comment="postgresql-plpython3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826011" comment="postgresql-pltcl is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826012" comment="postgresql-pltcl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826013" comment="postgresql-private-devel is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826014" comment="postgresql-private-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826015" comment="postgresql-private-libs is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826016" comment="postgresql-private-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826017" comment="postgresql-server is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826018" comment="postgresql-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826019" comment="postgresql-server-devel is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826020" comment="postgresql-server-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826021" comment="postgresql-static is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826022" comment="postgresql-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826023" comment="postgresql-test is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826024" comment="postgresql-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826025" comment="postgresql-upgrade is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826026" comment="postgresql-upgrade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826027" comment="postgresql-upgrade-devel is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826028" comment="postgresql-upgrade-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826029" comment="postgresql-test-rpm-macros is earlier than 0:16.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826030" comment="postgresql-test-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514009" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14009: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-21867" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21867"/>
        <reference ref_id="CVE-2025-38124" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38124"/>
        <reference ref_id="CVE-2025-38250" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38250"/>
        <reference ref_id="CVE-2025-38380" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38380"/>
        <reference ref_id="CVE-2025-38471" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38471"/>
        <reference ref_id="RHSA-2025:14009" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14009"/>
        <reference ref_id="ALSA-2025:14009" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14009.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: bpf, test_run: Fix use-after-free issue in eth_skb_pkt_type() (CVE-2025-21867)
  * kernel: net: fix udp gso skb_segment after pull from frag_list (CVE-2025-38124)
  * kernel: Bluetooth: hci_core: Fix use-after-free in vhci_flush() (CVE-2025-38250)
  * kernel: i2c/designware: Fix an initialization issue (CVE-2025-38380)
  * kernel: tls: always refresh the queue when reading sock (CVE-2025-38471)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-18"/>
          <updated date="2025-08-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2355334" id="2355334"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376041" id="2376041"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2378982" id="2378982"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383381" id="2383381"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383893" id="2383893"></bugzilla>
          <cve public="20250327" href="https://access.redhat.com/security/cve/CVE-2025-21867" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21867</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38124" impact="Moderate" cwe="CWE-704" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38124</cve>
          <cve public="20250709" href="https://access.redhat.com/security/cve/CVE-2025-38250" impact="Moderate" cwe="CWE-362" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-38250</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38380" impact="Important" cwe="CWE-908" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38380</cve>
          <cve public="20250728" href="https://access.redhat.com/security/cve/CVE-2025-38471" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H">CVE-2025-38471</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009001" comment="kernel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009002" comment="kernel-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009003" comment="kernel-debug is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009004" comment="kernel-debug-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009011" comment="kernel-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009013" comment="kernel-headers is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009014" comment="kernel-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009015" comment="kernel-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009017" comment="kernel-rt is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009018" comment="kernel-rt-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009031" comment="kernel-tools is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009035" comment="perf is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009036" comment="python3-perf is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009037" comment="rtla is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009038" comment="rv is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009046" comment="kernel-64k is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009047" comment="kernel-64k-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009074" comment="libperf is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514009076" comment="kernel-doc is earlier than 0:6.12.0-55.28.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514844" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14844: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-9179" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9179"/>
        <reference ref_id="CVE-2025-9180" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9180"/>
        <reference ref_id="CVE-2025-9181" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9181"/>
        <reference ref_id="CVE-2025-9182" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9182"/>
        <reference ref_id="CVE-2025-9185" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9185"/>
        <reference ref_id="RHSA-2025:14844" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14844"/>
        <reference ref_id="ALSA-2025:14844" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14844.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Denial-of-service due to out-of-memory in the Graphics: WebRender component (CVE-2025-9182)
  * thunderbird: firefox: Sandbox escape due to invalid pointer in the Audio/Video: GMP component (CVE-2025-9179)
  * thunderbird: firefox: Same-origin policy bypass in the Graphics: Canvas2D component (CVE-2025-9180)
  * thunderbird: firefox: Uninitialized memory in the JavaScript Engine component (CVE-2025-9181)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 115.27, Firefox ESR 128.14, Thunderbird ESR 128.14, Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142 (CVE-2025-9185)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-28"/>
          <updated date="2025-08-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2389575" id="2389575"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389580" id="2389580"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389581" id="2389581"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389583" id="2389583"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389584" id="2389584"></bugzilla>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9179" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9179</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9180" impact="Important" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9180</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9181" impact="Moderate" cwe="CWE-665" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-9181</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9182" impact="Low" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-9182</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-9185" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9185</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514844001" comment="thunderbird is earlier than 0:128.14.0-3.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515020" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15020: udisks2 security update (Important)</title>
        <reference ref_id="CVE-2025-8067" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8067"/>
        <reference ref_id="RHSA-2025:15020" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15020"/>
        <reference ref_id="ALSA-2025:15020" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15020.html"/>
        <description>The Udisks project provides a daemon, tools, and libraries to access and manipulate disks, storage devices, and technologies.  

Security Fix(es):  

  * udisks: Out-of-bounds read in UDisks Daemon (CVE-2025-8067)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-02"/>
          <updated date="2025-09-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2388623" id="2388623"></bugzilla>
          <cve public="20250828" href="https://access.redhat.com/security/cve/CVE-2025-8067" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:H">CVE-2025-8067</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020001" comment="libudisks2 is earlier than 0:2.10.90-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020002" comment="libudisks2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020003" comment="udisks2 is earlier than 0:2.10.90-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020004" comment="udisks2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020005" comment="udisks2-iscsi is earlier than 0:2.10.90-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020006" comment="udisks2-iscsi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020007" comment="udisks2-lsm is earlier than 0:2.10.90-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020008" comment="udisks2-lsm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020009" comment="udisks2-lvm2 is earlier than 0:2.10.90-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020010" comment="udisks2-lvm2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020011" comment="libudisks2-devel is earlier than 0:2.10.90-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515020012" comment="libudisks2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515699" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15699: mysql-selinux and mysql8.4 security update (Moderate)</title>
        <reference ref_id="CVE-2024-13176" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-13176"/>
        <reference ref_id="CVE-2025-5399" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5399"/>
        <reference ref_id="CVE-2025-21574" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21574"/>
        <reference ref_id="CVE-2025-21575" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21575"/>
        <reference ref_id="CVE-2025-21577" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21577"/>
        <reference ref_id="CVE-2025-21579" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21579"/>
        <reference ref_id="CVE-2025-21580" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21580"/>
        <reference ref_id="CVE-2025-21581" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21581"/>
        <reference ref_id="CVE-2025-21584" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21584"/>
        <reference ref_id="CVE-2025-21585" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21585"/>
        <reference ref_id="CVE-2025-21588" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21588"/>
        <reference ref_id="CVE-2025-30681" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30681"/>
        <reference ref_id="CVE-2025-30682" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30682"/>
        <reference ref_id="CVE-2025-30683" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30683"/>
        <reference ref_id="CVE-2025-30684" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30684"/>
        <reference ref_id="CVE-2025-30685" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30685"/>
        <reference ref_id="CVE-2025-30687" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30687"/>
        <reference ref_id="CVE-2025-30688" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30688"/>
        <reference ref_id="CVE-2025-30689" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30689"/>
        <reference ref_id="CVE-2025-30693" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30693"/>
        <reference ref_id="CVE-2025-30695" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30695"/>
        <reference ref_id="CVE-2025-30696" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30696"/>
        <reference ref_id="CVE-2025-30699" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30699"/>
        <reference ref_id="CVE-2025-30703" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30703"/>
        <reference ref_id="CVE-2025-30704" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30704"/>
        <reference ref_id="CVE-2025-30705" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30705"/>
        <reference ref_id="CVE-2025-30715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30715"/>
        <reference ref_id="CVE-2025-30721" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30721"/>
        <reference ref_id="CVE-2025-30722" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30722"/>
        <reference ref_id="CVE-2025-50077" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50077"/>
        <reference ref_id="CVE-2025-50078" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50078"/>
        <reference ref_id="CVE-2025-50079" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50079"/>
        <reference ref_id="CVE-2025-50080" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50080"/>
        <reference ref_id="CVE-2025-50081" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50081"/>
        <reference ref_id="CVE-2025-50082" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50082"/>
        <reference ref_id="CVE-2025-50083" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50083"/>
        <reference ref_id="CVE-2025-50084" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50084"/>
        <reference ref_id="CVE-2025-50085" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50085"/>
        <reference ref_id="CVE-2025-50086" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50086"/>
        <reference ref_id="CVE-2025-50087" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50087"/>
        <reference ref_id="CVE-2025-50088" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50088"/>
        <reference ref_id="CVE-2025-50091" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50091"/>
        <reference ref_id="CVE-2025-50092" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50092"/>
        <reference ref_id="CVE-2025-50093" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50093"/>
        <reference ref_id="CVE-2025-50094" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50094"/>
        <reference ref_id="CVE-2025-50096" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50096"/>
        <reference ref_id="CVE-2025-50097" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50097"/>
        <reference ref_id="CVE-2025-50098" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50098"/>
        <reference ref_id="CVE-2025-50099" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50099"/>
        <reference ref_id="CVE-2025-50100" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50100"/>
        <reference ref_id="CVE-2025-50101" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50101"/>
        <reference ref_id="CVE-2025-50102" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50102"/>
        <reference ref_id="CVE-2025-50104" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-50104"/>
        <reference ref_id="RHSA-2025:15699" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15699"/>
        <reference ref_id="ALSA-2025:15699" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15699.html"/>
        <description>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.  

Security Fix(es):  

  * openssl: Timing side-channel in ECDSA signature computation (CVE-2024-13176)
  * mysql: mysqldump unspecified vulnerability (CPU Apr 2025) (CVE-2025-30722)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30688)
  * mysql: Stored Procedure unspecified vulnerability (CPU Apr 2025) (CVE-2025-30699)
  * mysql: UDF unspecified vulnerability (CPU Apr 2025) (CVE-2025-30721)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30682)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30683)
  * mysql: Components Services unspecified vulnerability (CPU Apr 2025) (CVE-2025-30715)
  * mysql: Parser unspecified vulnerability (CPU Apr 2025) (CVE-2025-21574)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-21585)
  * mysql: DML unspecified vulnerability (CPU Apr 2025) (CVE-2025-21588)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30681)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-21577)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30687)
  * mysql: DML unspecified vulnerability (CPU Apr 2025) (CVE-2025-21580)
  * mysql: PS unspecified vulnerability (CPU Apr 2025) (CVE-2025-30696)
  * mysql: PS unspecified vulnerability (CPU Apr 2025) (CVE-2025-30705)
  * mysql: Parser unspecified vulnerability (CPU Apr 2025) (CVE-2025-21575)
  * mysql: Options unspecified vulnerability (CPU Apr 2025) (CVE-2025-21579)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30685)
  * mysql: Components Services unspecified vulnerability (CPU Apr 2025) (CVE-2025-30704)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-21581)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2025) (CVE-2025-30689)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-30695)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-30703)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-30693)
  * mysql: DDL unspecified vulnerability (CPU Apr 2025) (CVE-2025-21584)
  * mysql: Replication unspecified vulnerability (CPU Apr 2025) (CVE-2025-30684)
  * curl: libcurl: WebSocket endless loop (CVE-2025-5399)
  * mysql: InnoDB unspecified vulnerability (CPU Jul 2025) (CVE-2025-50092)
  * mysql: mysqldump unspecified vulnerability (CPU Jul 2025) (CVE-2025-50081)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50079)
  * mysql: InnoDB unspecified vulnerability (CPU Jul 2025) (CVE-2025-50077)
  * mysql: DML unspecified vulnerability (CPU Jul 2025) (CVE-2025-50078)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50091)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50101)
  * mysql: DDL unspecified vulnerability (CPU Jul 2025) (CVE-2025-50093)
  * mysql: InnoDB unspecified vulnerability (CPU Jul 2025) (CVE-2025-50099)
  * mysql: InnoDB unspecified vulnerability (CPU Jul 2025) (CVE-2025-50085)
  * mysql: Components Services unspecified vulnerability (CPU Jul 2025) (CVE-2025-50086)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50082)
  * mysql: Encryption unspecified vulnerability (CPU Jul 2025) (CVE-2025-50097)
  * mysql: DDL unspecified vulnerability (CPU Jul 2025) (CVE-2025-50104)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50087)
  * mysql: Stored Procedure unspecified vulnerability (CPU Jul 2025) (CVE-2025-50080)
  * mysql: InnoDB unspecified vulnerability (CPU Jul 2025) (CVE-2025-50088)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50083)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50084)
  * mysql: Thread Pooling unspecified vulnerability (CPU Jul 2025) (CVE-2025-50100)
  * mysql: DDL unspecified vulnerability (CPU Jul 2025) (CVE-2025-50094)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50098)
  * mysql: InnoDB unspecified vulnerability (CPU Jul 2025) (CVE-2025-50096)
  * mysql: Optimizer unspecified vulnerability (CPU Jul 2025) (CVE-2025-50102)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-11"/>
          <updated date="2025-09-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2359885" id="2359885"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359888" id="2359888"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359892" id="2359892"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359894" id="2359894"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359895" id="2359895"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359899" id="2359899"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359900" id="2359900"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359902" id="2359902"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359903" id="2359903"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359911" id="2359911"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359918" id="2359918"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359920" id="2359920"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359924" id="2359924"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359928" id="2359928"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359930" id="2359930"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359932" id="2359932"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359934" id="2359934"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359938" id="2359938"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359940" id="2359940"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359943" id="2359943"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359944" id="2359944"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359945" id="2359945"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359947" id="2359947"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359950" id="2359950"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359963" id="2359963"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359964" id="2359964"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359972" id="2359972"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2370920" id="2370920"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380264" id="2380264"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380273" id="2380273"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380274" id="2380274"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380278" id="2380278"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380280" id="2380280"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380283" id="2380283"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380284" id="2380284"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380290" id="2380290"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380291" id="2380291"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380295" id="2380295"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380298" id="2380298"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380306" id="2380306"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380308" id="2380308"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380309" id="2380309"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380310" id="2380310"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380312" id="2380312"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380313" id="2380313"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380320" id="2380320"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380321" id="2380321"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380322" id="2380322"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380326" id="2380326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380327" id="2380327"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380334" id="2380334"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380335" id="2380335"></bugzilla>
          <cve public="20250120" href="https://access.redhat.com/security/cve/CVE-2024-13176" impact="Low" cwe="CWE-385" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N">CVE-2024-13176</cve>
          <cve public="20250607" href="https://access.redhat.com/security/cve/CVE-2025-5399" impact="Moderate" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L">CVE-2025-5399</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21574" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21574</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21575" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21575</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21577" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21577</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21579" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21579</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21580" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21580</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21581" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21581</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21584" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21584</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21585" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21585</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-21588" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21588</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30681" impact="Low" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L">CVE-2025-30681</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30682" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30682</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30683" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30683</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30684" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30684</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30685" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30685</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30687" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30687</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30688" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30688</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30689" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30689</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30693" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H">CVE-2025-30693</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30695" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H">CVE-2025-30695</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30696" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30696</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30699" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30699</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30703" impact="Low" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N">CVE-2025-30703</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30704" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30704</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30705" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30705</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30715" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-30715</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30721" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:N/A:H">CVE-2025-30721</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30722" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N">CVE-2025-30722</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50077" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50077</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50078" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50078</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50079" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50079</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50080" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50080</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50081" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:N">CVE-2025-50081</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50082" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50082</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50083" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50083</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50084" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50084</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50085" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H">CVE-2025-50085</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50086" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50086</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50087" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N">CVE-2025-50087</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50088" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50088</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50091" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50091</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50092" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-50092</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50093" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50093</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50094" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50094</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50096" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-50096</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50097" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50097</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50098" impact="Low" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L">CVE-2025-50098</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50099" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50099</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50100" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L">CVE-2025-50100</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50101" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-50101</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50102" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-50102</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-50104" impact="Low" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L">CVE-2025-50104</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699001" comment="mysql8.4 is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699002" comment="mysql8.4 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699003" comment="mysql8.4-libs is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699004" comment="mysql8.4-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699005" comment="mysql8.4-server is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699006" comment="mysql8.4-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699007" comment="mysql8.4-devel is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699008" comment="mysql8.4-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699009" comment="mysql8.4-test is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699010" comment="mysql8.4-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699011" comment="mysql-selinux is earlier than 0:1.0.14-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699012" comment="mysql-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699013" comment="mysql8.4-common is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699014" comment="mysql8.4-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699015" comment="mysql8.4-errmsg is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699016" comment="mysql8.4-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699017" comment="mysql8.4-test-data is earlier than 0:8.4.6-2.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699018" comment="mysql8.4-test-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515447" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15447: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-22097" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22097"/>
        <reference ref_id="CVE-2025-37803" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37803"/>
        <reference ref_id="CVE-2025-38350" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38350"/>
        <reference ref_id="CVE-2025-38449" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38449"/>
        <reference ref_id="RHSA-2025:15447" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15447"/>
        <reference ref_id="ALSA-2025:15447" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15447.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: drm/vkms: Fix use after free and double free on init error (CVE-2025-22097)
  * kernel: udmabuf: fix a buf size overflow issue during udmabuf creation (CVE-2025-37803)
  * kernel: net/sched: Always pass notifications when child class becomes empty (CVE-2025-38350)
  * kernel: drm/gem: Acquire references on GEM handles for framebuffers (CVE-2025-38449)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-08"/>
          <updated date="2025-09-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360223" id="2360223"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2365013" id="2365013"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2382054" id="2382054"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383519" id="2383519"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22097" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22097</cve>
          <cve public="20250508" href="https://access.redhat.com/security/cve/CVE-2025-37803" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-37803</cve>
          <cve public="20250719" href="https://access.redhat.com/security/cve/CVE-2025-38350" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38350</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38449" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-38449</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447001" comment="kernel-rt-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447002" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447003" comment="kernel-rt-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447004" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447005" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447006" comment="kernel-tools is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447007" comment="kernel-tools-libs is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447008" comment="kernel-uki-virt is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447009" comment="kernel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447010" comment="kernel-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447011" comment="kernel-debug is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447012" comment="kernel-debug-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447013" comment="kernel-debug-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447014" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447015" comment="kernel-debug-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447016" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447017" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447018" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447019" comment="kernel-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447020" comment="kernel-devel-matched is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447021" comment="kernel-headers is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447022" comment="kernel-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447023" comment="kernel-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447024" comment="kernel-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447025" comment="kernel-rt is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447026" comment="kernel-rt-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447027" comment="kernel-rt-debug is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447028" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447029" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447030" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447031" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447032" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447033" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447035" comment="perf is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447036" comment="python3-perf is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447037" comment="rtla is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447038" comment="rv is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447046" comment="kernel-64k is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447047" comment="kernel-64k-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447074" comment="libperf is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515447076" comment="kernel-doc is earlier than 0:6.12.0-55.31.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20259940" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:9940: python-setuptools security update (Moderate)</title>
        <reference ref_id="CVE-2025-47273" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47273"/>
        <reference ref_id="RHSA-2025:9940" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:9940"/>
        <reference ref_id="ALSA-2025:9940" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-9940.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * setuptools: Path Traversal Vulnerability in setuptools PackageIndex (CVE-2025-47273)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-06-30"/>
          <updated date="2025-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2366982" id="2366982"></bugzilla>
          <cve public="20250517" href="https://access.redhat.com/security/cve/CVE-2025-47273" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L">CVE-2025-47273</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259940001" comment="python3-setuptools is earlier than 0:69.0.3-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259940002" comment="python3-setuptools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259940003" comment="python3-setuptools-wheel is earlier than 0:69.0.3-12.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259940004" comment="python3-setuptools-wheel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515782" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15782: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-22068" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22068"/>
        <reference ref_id="CVE-2025-38332" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38332"/>
        <reference ref_id="CVE-2025-38392" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38392"/>
        <reference ref_id="CVE-2025-38463" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38463"/>
        <reference ref_id="CVE-2025-38498" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38498"/>
        <reference ref_id="CVE-2025-38500" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38500"/>
        <reference ref_id="CVE-2025-38550" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38550"/>
        <reference ref_id="RHSA-2025:15782" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15782"/>
        <reference ref_id="ALSA-2025:15782" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15782.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ublk: make sure ubq-&gt;canceling is set when queue is frozen (CVE-2025-22068)
  * kernel: scsi: lpfc: Use memcpy() for BIOS version (CVE-2025-38332)
  * kernel: idpf: convert control queue mutex to a spinlock (CVE-2025-38392)
  * kernel: tcp: Correct signedness in skb remaining space calculation (CVE-2025-38463)
  * kernel: do_change_type(): refuse to operate on unmounted/not ours mounts (CVE-2025-38498)
  * kernel: xfrm: interface: fix use-after-free after changing collect_md xfrm interface (CVE-2025-38500)
  * kernel: ipv6: mcast: Delay put pmc-&gt;idev in mld_del_delrec() (CVE-2025-38550)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-15"/>
          <updated date="2025-09-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360225" id="2360225"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379246" id="2379246"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383407" id="2383407"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383493" id="2383493"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2384422" id="2384422"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2387866" id="2387866"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2388941" id="2388941"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22068" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22068</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-38332" impact="Moderate" cwe="CWE-170" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38332</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38392" impact="Moderate" cwe="CWE-767" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-38392</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38463" impact="Moderate" cwe="CWE-681" cvss3="CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H">CVE-2025-38463</cve>
          <cve public="20250730" href="https://access.redhat.com/security/cve/CVE-2025-38498" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:H">CVE-2025-38498</cve>
          <cve public="20250812" href="https://access.redhat.com/security/cve/CVE-2025-38500" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38500</cve>
          <cve public="20250816" href="https://access.redhat.com/security/cve/CVE-2025-38550" impact="Moderate" cvss3="CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2025-38550</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782001" comment="perf is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782002" comment="kernel-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782003" comment="kernel-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782004" comment="kernel-tools is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782005" comment="kernel-tools-libs is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782006" comment="python3-perf is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782007" comment="rtla is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782008" comment="rv is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782009" comment="kernel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782010" comment="kernel-64k is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782011" comment="kernel-64k-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782012" comment="kernel-64k-debug is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782013" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782014" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782015" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782016" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782017" comment="kernel-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782018" comment="kernel-debug is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782019" comment="kernel-debug-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782020" comment="kernel-debug-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782021" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782022" comment="kernel-debug-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782023" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782024" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782025" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782026" comment="kernel-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782027" comment="kernel-devel-matched is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782028" comment="kernel-headers is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782029" comment="kernel-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782030" comment="kernel-rt is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782031" comment="kernel-rt-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782032" comment="kernel-rt-debug is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782033" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782034" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782035" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782036" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782037" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782038" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782039" comment="kernel-rt-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782040" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782041" comment="kernel-rt-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782042" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782043" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782044" comment="kernel-uki-virt is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782045" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782046" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782047" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782048" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782049" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782050" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782051" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782052" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782074" comment="libperf is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515782076" comment="kernel-doc is earlier than 0:6.12.0-55.33.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263443" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3443: valkey security update (Important)</title>
        <reference ref_id="CVE-2025-67733" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-67733"/>
        <reference ref_id="CVE-2026-21863" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21863"/>
        <reference ref_id="RHSA-2026:3443" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3443"/>
        <reference ref_id="ALSA-2026:3443" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3443.html"/>
        <description>Valkey is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Valkey works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Valkey also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Valkey behave like a cache. You can use Valkey from most programming languages also.  

Security Fix(es):  

  * Valkey: Valkey: Data tampering and denial of service via improper null character handling in Lua scripts (CVE-2025-67733)
  * valkey: Valkey: Denial of Service via invalid clusterbus packet (CVE-2026-21863)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-26"/>
          <updated date="2026-02-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2442025" id="2442025"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442026" id="2442026"></bugzilla>
          <cve public="20260223" href="https://access.redhat.com/security/cve/CVE-2025-67733" impact="Important" cwe="CWE-170" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:H">CVE-2025-67733</cve>
          <cve public="20260223" href="https://access.redhat.com/security/cve/CVE-2026-21863" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21863</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263443001" comment="valkey is earlier than 0:8.0.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509002" comment="valkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263443002" comment="valkey-devel is earlier than 0:8.0.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509004" comment="valkey-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516354" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16354: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-37810" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37810"/>
        <reference ref_id="CVE-2025-38566" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38566"/>
        <reference ref_id="RHSA-2025:16354" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16354"/>
        <reference ref_id="ALSA-2025:16354" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16354.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: usb: dwc3: gadget: check that event count does not exceed event buffer length (CVE-2025-37810)
  * kernel: sunrpc: fix handling of server side tls alerts (CVE-2025-38566)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-22"/>
          <updated date="2025-09-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2365028" id="2365028"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389487" id="2389487"></bugzilla>
          <cve public="20250508" href="https://access.redhat.com/security/cve/CVE-2025-37810" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-37810</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-38566" impact="Moderate" cwe="CWE-754" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38566</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354001" comment="kernel-debug-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354002" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354003" comment="kernel-debug-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354004" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354005" comment="kernel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354006" comment="kernel-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354007" comment="kernel-debug is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354008" comment="kernel-debug-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354010" comment="kernel-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354011" comment="kernel-devel-matched is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354012" comment="kernel-headers is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354013" comment="kernel-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354014" comment="kernel-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354015" comment="kernel-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354016" comment="kernel-tools is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354017" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354018" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354019" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354020" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354021" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354022" comment="kernel-rt is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354023" comment="kernel-rt-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354024" comment="kernel-rt-debug is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354025" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354026" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354027" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354028" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354029" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354030" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354031" comment="kernel-rt-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354032" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354033" comment="kernel-rt-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354034" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354035" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354036" comment="kernel-tools-libs is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354037" comment="kernel-uki-virt is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354038" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354039" comment="perf is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354040" comment="python3-perf is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354041" comment="rtla is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354042" comment="rv is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354046" comment="kernel-64k is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354047" comment="kernel-64k-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354074" comment="libperf is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516354076" comment="kernel-doc is earlier than 0:6.12.0-55.34.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202517429" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:17429: open-vm-tools security update (Important)</title>
        <reference ref_id="CVE-2025-41244" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-41244"/>
        <reference ref_id="RHSA-2025:17429" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:17429"/>
        <reference ref_id="ALSA-2025:17429" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-17429.html"/>
        <description>The Open Virtual Machine Tools are the open source implementation of the VMware Tools. They are a set of guest operating system virtualization components that enhance performance and user experience of virtual machines.  

Security Fix(es):  

  * open-vm-tools: Local privilege escalation in open-vm-tools (CVE-2025-41244)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-07"/>
          <updated date="2025-10-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2397752" id="2397752"></bugzilla>
          <cve public="20250929" href="https://access.redhat.com/security/cve/CVE-2025-41244" impact="Important" cwe="CWE-280" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-41244</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517429001" comment="open-vm-tools is earlier than 0:12.5.0-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003010" comment="open-vm-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517429002" comment="open-vm-tools-desktop is earlier than 0:12.5.0-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003012" comment="open-vm-tools-desktop is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517429003" comment="open-vm-tools-salt-minion is earlier than 0:12.5.0-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003004" comment="open-vm-tools-salt-minion is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517429004" comment="open-vm-tools-sdmp is earlier than 0:12.5.0-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003008" comment="open-vm-tools-sdmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517429005" comment="open-vm-tools-test is earlier than 0:12.5.0-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2025000003002" comment="open-vm-tools-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520998" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20998: libtiff security update (Important)</title>
        <reference ref_id="CVE-2025-9900" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9900"/>
        <reference ref_id="RHSA-2025:20998" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20998"/>
        <reference ref_id="ALSA-2025:20998" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20998.html"/>
        <description>The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.  

Security Fix(es):  

  * libtiff: Libtiff Write-What-Where (CVE-2025-9900)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2392784" id="2392784"></bugzilla>
          <cve public="20250922" href="https://access.redhat.com/security/cve/CVE-2025-9900" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9900</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520998001" comment="libtiff is earlier than 0:4.6.0-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156001" comment="libtiff is earlier than 0:4.6.0-6.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156002" comment="libtiff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520998002" comment="libtiff-devel is earlier than 0:4.6.0-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156003" comment="libtiff-devel is earlier than 0:4.6.0-6.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156004" comment="libtiff-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520998003" comment="libtiff-tools is earlier than 0:4.6.0-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156005" comment="libtiff-tools is earlier than 0:4.6.0-6.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156006" comment="libtiff-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202514984" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:14984: python3.12 security update (Moderate)</title>
        <reference ref_id="CVE-2025-8194" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8194"/>
        <reference ref_id="RHSA-2025:14984" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:14984"/>
        <reference ref_id="ALSA-2025:14984" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-14984.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * cpython: Cpython infinite loop when parsing a tarfile (CVE-2025-8194)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-02"/>
          <updated date="2025-09-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2384043" id="2384043"></bugzilla>
          <cve public="20250728" href="https://access.redhat.com/security/cve/CVE-2025-8194" impact="Moderate" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-8194</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984001" comment="python3 is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984002" comment="python3-devel is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984003" comment="python3-libs is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984004" comment="python3-tkinter is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984005" comment="python3-debug is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984006" comment="python3-idle is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984007" comment="python3-test is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514984008" comment="python-unversioned-command is earlier than 0:3.12.9-2.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202517396" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:17396: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-22026" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22026"/>
        <reference ref_id="CVE-2025-38718" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38718"/>
        <reference ref_id="RHSA-2025:17396" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:17396"/>
        <reference ref_id="ALSA-2025:17396" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-17396.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: nfsd: don't ignore the return code of svc_proc_register() (CVE-2025-22026)
  * kernel: sctp: linearize cloned gso packets in sctp_rcv (CVE-2025-38718)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-06"/>
          <updated date="2025-10-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360224" id="2360224"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393166" id="2393166"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22026" impact="Moderate" cwe="CWE-252" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-22026</cve>
          <cve public="20250904" href="https://access.redhat.com/security/cve/CVE-2025-38718" impact="Moderate" cwe="CWE-664" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38718</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396001" comment="kernel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396002" comment="kernel-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396003" comment="kernel-debug is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396004" comment="kernel-debug-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396011" comment="kernel-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396013" comment="kernel-headers is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396014" comment="kernel-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396015" comment="kernel-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396017" comment="kernel-rt is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396018" comment="kernel-rt-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396031" comment="kernel-tools is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396035" comment="perf is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396036" comment="python3-perf is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396037" comment="rtla is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396038" comment="rv is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396046" comment="kernel-64k is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396047" comment="kernel-64k-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396074" comment="libperf is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517396076" comment="kernel-doc is earlier than 0:6.12.0-55.38.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520478" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20478: zziplib security update (Moderate)</title>
        <reference ref_id="CVE-2018-17828" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2018-17828"/>
        <reference ref_id="RHSA-2025:20478" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20478"/>
        <reference ref_id="ALSA-2025:20478" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20478.html"/>
        <description>The zziplib is a lightweight library to easily extract data from zip files.  

Security Fix(es):  

  * zziplib: directory traversal in unzzip_cat in the bins/unzzipcat-mem.c (CVE-2018-17828)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/1635888" id="1635888"></bugzilla>
          <cve public="20180925" href="https://access.redhat.com/security/cve/CVE-2018-17828" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N">CVE-2018-17828</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520478001" comment="zziplib is earlier than 0:0.13.78-2.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520478002" comment="zziplib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520478003" comment="zziplib-utils is earlier than 0:0.13.78-2.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520478004" comment="zziplib-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520478005" comment="zziplib-devel is earlier than 0:0.13.78-2.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520478006" comment="zziplib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202515005" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:15005: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-22058" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22058"/>
        <reference ref_id="CVE-2025-37823" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37823"/>
        <reference ref_id="CVE-2025-38211" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38211"/>
        <reference ref_id="CVE-2025-38220" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38220"/>
        <reference ref_id="CVE-2025-38461" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38461"/>
        <reference ref_id="CVE-2025-38464" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38464"/>
        <reference ref_id="CVE-2025-38472" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38472"/>
        <reference ref_id="RHSA-2025:15005" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:15005"/>
        <reference ref_id="ALSA-2025:15005" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-15005.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: udp: Fix memory accounting leak. (CVE-2025-22058)
  * kernel: net_sched: hfsc: Fix a potential UAF in hfsc_dequeue() too (CVE-2025-37823)
  * kernel: ext4: only dirty folios when data journaling regular files (CVE-2025-38220)
  * kernel: RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction (CVE-2025-38211)
  * kernel: tipc: Fix use-after-free in tipc_conn_close() (CVE-2025-38464)
  * kernel: vsock: Fix transport_* TOCTOU (CVE-2025-38461)
  * kernel: netfilter: nf_conntrack: fix crash due to removal of uninitialised entry (CVE-2025-38472)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-02"/>
          <updated date="2025-09-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360276" id="2360276"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2365024" id="2365024"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376363" id="2376363"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376406" id="2376406"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383509" id="2383509"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383513" id="2383513"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383916" id="2383916"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22058" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-22058</cve>
          <cve public="20250508" href="https://access.redhat.com/security/cve/CVE-2025-37823" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-37823</cve>
          <cve public="20250704" href="https://access.redhat.com/security/cve/CVE-2025-38211" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-38211</cve>
          <cve public="20250704" href="https://access.redhat.com/security/cve/CVE-2025-38220" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38220</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38461" impact="Moderate" cwe="CWE-664" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-38461</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38464" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-38464</cve>
          <cve public="20250728" href="https://access.redhat.com/security/cve/CVE-2025-38472" impact="Moderate" cwe="CWE-362" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H">CVE-2025-38472</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005001" comment="kernel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005002" comment="kernel-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005003" comment="kernel-debug is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005004" comment="kernel-debug-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005011" comment="kernel-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005013" comment="kernel-headers is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005014" comment="kernel-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005015" comment="kernel-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005017" comment="kernel-rt is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005018" comment="kernel-rt-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005031" comment="kernel-tools is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005035" comment="perf is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005036" comment="python3-perf is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005037" comment="rtla is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005038" comment="rv is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005046" comment="kernel-64k is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005047" comment="kernel-64k-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005074" comment="libperf is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515005076" comment="kernel-doc is earlier than 0:6.12.0-55.30.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202510073" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:10073: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-6424" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6424"/>
        <reference ref_id="CVE-2025-6425" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6425"/>
        <reference ref_id="CVE-2025-6429" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6429"/>
        <reference ref_id="CVE-2025-6430" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6430"/>
        <reference ref_id="RHSA-2025:10073" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:10073"/>
        <reference ref_id="ALSA-2025:10073" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-10073.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: Content-Disposition header ignored when a file is included in an embed or object tag (CVE-2025-6430)
  * firefox: Use-after-free in FontFaceSet (CVE-2025-6424)
  * firefox: Incorrect parsing of URLs could have allowed embedding of youtube.com (CVE-2025-6429)
  * firefox: The WebCompat WebExtension shipped with Firefox exposed a persistent UUID (CVE-2025-6425)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-07-01"/>
          <updated date="2025-07-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2374555" id="2374555"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2374559" id="2374559"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2374561" id="2374561"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2374562" id="2374562"></bugzilla>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-6424" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-6424</cve>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-6425" impact="Moderate" cwe="CWE-200" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-6425</cve>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-6429" impact="Moderate" cwe="CWE-706" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-6429</cve>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-6430" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-6430</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202510073001" comment="firefox is earlier than 0:128.12.0-1.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202513941" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:13941: golang security update (Important)</title>
        <reference ref_id="CVE-2025-4674" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4674"/>
        <reference ref_id="RHSA-2025:13941" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:13941"/>
        <reference ref_id="ALSA-2025:13941" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-13941.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * cmd/go: Go VCS Command Execution Vulnerability (CVE-2025-4674)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-08-18"/>
          <updated date="2025-08-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2384329" id="2384329"></bugzilla>
          <cve public="20250729" href="https://access.redhat.com/security/cve/CVE-2025-4674" impact="Important" cwe="CWE-74" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H">CVE-2025-4674</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941001" comment="go-toolset is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941002" comment="golang is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941003" comment="golang-bin is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941004" comment="golang-race is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941005" comment="golang-docs is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941006" comment="golang-misc is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941007" comment="golang-src is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202513941008" comment="golang-tests is earlier than 0:1.24.6-1.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202516432" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:16432: opentelemetry-collector security update (Moderate)</title>
        <reference ref_id="CVE-2025-4673" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4673"/>
        <reference ref_id="RHSA-2025:16432" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:16432"/>
        <reference ref_id="ALSA-2025:16432" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-16432.html"/>
        <description>Collector with the supported components for a AlmaLinux build of OpenTelemetry  

Security Fix(es):  

  * net/[http:](http:) Sensitive headers not cleared on cross-origin redirect in net/http (CVE-2025-4673)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-09-23"/>
          <updated date="2025-09-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2373305" id="2373305"></bugzilla>
          <cve public="20250611" href="https://access.redhat.com/security/cve/CVE-2025-4673" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N">CVE-2025-4673</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202516432001" comment="opentelemetry-collector is earlier than 0:0.127.0-3.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850002" comment="opentelemetry-collector is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518231" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18231: libssh security update (Moderate)</title>
        <reference ref_id="CVE-2025-5318" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5318"/>
        <reference ref_id="RHSA-2025:18231" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18231"/>
        <reference ref_id="ALSA-2025:18231" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18231.html"/>
        <description>libssh is a library which implements the SSH protocol. It can be used to implement client and server applications.  

Security Fix(es):  

  * libssh: out-of-bounds read in sftp_handle() (CVE-2025-5318)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-16"/>
          <updated date="2025-10-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369131" id="2369131"></bugzilla>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-5318" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2025-5318</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231001" comment="libssh is earlier than 0:0.11.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521013001" comment="libssh is earlier than 0:0.11.1-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231002" comment="libssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231003" comment="libssh-devel is earlier than 0:0.11.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521013002" comment="libssh-devel is earlier than 0:0.11.1-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231004" comment="libssh-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231005" comment="libssh-config is earlier than 0:0.11.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521013003" comment="libssh-config is earlier than 0:0.11.1-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231006" comment="libssh-config is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518183" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18183: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2025-11021" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11021"/>
        <reference ref_id="RHSA-2025:18183" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18183"/>
        <reference ref_id="ALSA-2025:18183" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18183.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Out-of-Bounds Read in Cookie Date Handling of libsoup HTTP Library (CVE-2025-11021)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-15"/>
          <updated date="2025-10-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2399627" id="2399627"></bugzilla>
          <cve public="20250926" href="https://access.redhat.com/security/cve/CVE-2025-11021" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2025-11021</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518183001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_0.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521032001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518183002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_0.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521032002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518183003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_0.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521032003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202517776" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:17776: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38556" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38556"/>
        <reference ref_id="CVE-2025-39757" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39757"/>
        <reference ref_id="CVE-2025-39761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39761"/>
        <reference ref_id="RHSA-2025:17776" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:17776"/>
        <reference ref_id="ALSA-2025:17776" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-17776.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: HID: core: Harden s32ton() against conversion to 0 bits (CVE-2025-38556)
  * kernel: wifi: ath12k: Decrement TID on RX peer frag setup error handling (CVE-2025-39761)
  * kernel: ALSA: usb-audio: Validate UAC3 cluster segment descriptors (CVE-2025-39757)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-13"/>
          <updated date="2025-10-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2389456" id="2389456"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2394606" id="2394606"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2394615" id="2394615"></bugzilla>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-38556" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-38556</cve>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-39757" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-39757</cve>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-39761" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-39761</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776001" comment="kernel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776002" comment="kernel-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776003" comment="kernel-debug is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776004" comment="kernel-debug-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776011" comment="kernel-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776013" comment="kernel-headers is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776014" comment="kernel-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776015" comment="kernel-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776017" comment="kernel-rt is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776018" comment="kernel-rt-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776019" comment="kernel-rt-debug is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776022" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776026" comment="kernel-rt-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776027" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776028" comment="kernel-rt-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776031" comment="kernel-tools is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776032" comment="kernel-tools-libs is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776033" comment="kernel-uki-virt is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776035" comment="perf is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776036" comment="python3-perf is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776037" comment="rtla is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776038" comment="rv is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776039" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776046" comment="kernel-64k is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776047" comment="kernel-64k-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776048" comment="kernel-64k-debug is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776055" comment="kernel-64k-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776057" comment="kernel-64k-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776060" comment="kernel-rt-64k is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776072" comment="kernel-cross-headers is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776074" comment="libperf is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517776076" comment="kernel-doc is earlier than 0:6.12.0-55.39.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518318" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18318: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38351" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38351"/>
        <reference ref_id="CVE-2025-38571" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38571"/>
        <reference ref_id="CVE-2025-38572" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38572"/>
        <reference ref_id="CVE-2025-38614" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38614"/>
        <reference ref_id="CVE-2025-39817" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39817"/>
        <reference ref_id="CVE-2025-39841" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39841"/>
        <reference ref_id="RHSA-2025:18318" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18318"/>
        <reference ref_id="ALSA-2025:18318" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18318.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: KVM: x86/hyper-v: Skip non-canonical addresses during PV TLB flush (CVE-2025-38351)
  * kernel: sunrpc: fix client side handling of tls alerts (CVE-2025-38571)
  * kernel: eventpoll: Fix semi-unbounded recursion (CVE-2025-38614)
  * kernel: ipv6: reject malicious packets in ipv6_gso_segment() (CVE-2025-38572)
  * kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare (CVE-2025-39817)
  * kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path (CVE-2025-39841)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-20"/>
          <updated date="2025-10-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2382059" id="2382059"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389480" id="2389480"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389491" id="2389491"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389517" id="2389517"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395805" id="2395805"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2396944" id="2396944"></bugzilla>
          <cve public="20250719" href="https://access.redhat.com/security/cve/CVE-2025-38351" impact="Moderate" cwe="CWE-754" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:H">CVE-2025-38351</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-38571" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38571</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-38572" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H">CVE-2025-38572</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-38614" impact="Moderate" cwe="CWE-674" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38614</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-39817" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39817</cve>
          <cve public="20250919" href="https://access.redhat.com/security/cve/CVE-2025-39841" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39841</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318001" comment="kernel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318002" comment="kernel-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318003" comment="kernel-debug is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318004" comment="kernel-debug-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318005" comment="kernel-debug-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318007" comment="kernel-debug-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318011" comment="kernel-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318012" comment="kernel-devel-matched is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318013" comment="kernel-headers is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318014" comment="kernel-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318015" comment="kernel-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318016" comment="kernel-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318017" comment="kernel-rt is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318018" comment="kernel-rt-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318019" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318020" comment="libperf is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318021" comment="kernel-rt-debug is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318022" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318023" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318024" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318025" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318026" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318027" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318028" comment="kernel-rt-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318029" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318030" comment="kernel-rt-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318031" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318032" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318033" comment="kernel-tools is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318034" comment="kernel-tools-libs is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318035" comment="kernel-uki-virt is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318036" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318037" comment="perf is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318038" comment="python3-perf is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318039" comment="rtla is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318040" comment="rv is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318041" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318042" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318043" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318044" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318045" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318046" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318047" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318048" comment="kernel-64k is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318049" comment="kernel-64k-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318050" comment="kernel-64k-debug is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318051" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318052" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318053" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318054" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318055" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318056" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318057" comment="kernel-64k-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318058" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318059" comment="kernel-64k-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318060" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318061" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318062" comment="kernel-rt-64k is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318063" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318064" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318065" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318066" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318067" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318068" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318069" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318070" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318071" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318072" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318073" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318074" comment="kernel-cross-headers is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518318076" comment="kernel-doc is earlier than 0:6.12.0-55.40.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622314" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22314: openssl security update (Moderate)</title>
        <reference ref_id="CVE-2026-28390" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-28390"/>
        <reference ref_id="RHSA-2026:22314" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22314"/>
        <reference ref_id="ALSA-2026:22314" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22314.html"/>
        <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.  

Security Fix(es):  

  * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing (CVE-2026-28390)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-01"/>
          <updated date="2026-06-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2456314" id="2456314"></bugzilla>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-28390" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-28390</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622314001" comment="openssl-libs is earlier than 1:3.5.5-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248006" comment="openssl-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622314002" comment="openssl-perl is earlier than 1:3.5.5-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248008" comment="openssl-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622314003" comment="openssl is earlier than 1:3.5.5-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248002" comment="openssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622314004" comment="openssl-devel is earlier than 1:3.5.5-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248004" comment="openssl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521035" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21035: xorg-x11-server-Xwayland security update (Moderate)</title>
        <reference ref_id="CVE-2025-62229" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62229"/>
        <reference ref_id="CVE-2025-62230" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62230"/>
        <reference ref_id="CVE-2025-62231" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62231"/>
        <reference ref_id="RHSA-2025:21035" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21035"/>
        <reference ref_id="ALSA-2025:21035" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21035.html"/>
        <description>Xwayland is an X server for running X clients under Wayland.  

Security Fix(es):  

  * xorg: xmayland: Use-after-free in XPresentNotify structure creation (CVE-2025-62229)
  * xorg: xwayland: Use-after-free in Xkb client resource removal (CVE-2025-62230)
  * xorg: xmayland: Value overflow in XkbSetCompatMap() (CVE-2025-62231)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2402649" id="2402649"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402653" id="2402653"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402660" id="2402660"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-62229" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-62229</cve>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-62230" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-62230</cve>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-62231" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-62231</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521035001" comment="xorg-x11-server-Xwayland is earlier than 0:24.1.5-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519435001" comment="xorg-x11-server-Xwayland is earlier than 0:24.1.5-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304002" comment="xorg-x11-server-Xwayland is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521035002" comment="xorg-x11-server-Xwayland-devel is earlier than 0:24.1.5-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519435002" comment="xorg-x11-server-Xwayland-devel is earlier than 0:24.1.5-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304004" comment="xorg-x11-server-Xwayland-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520145" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20145: shadow-utils security update (Low)</title>
        <reference ref_id="CVE-2024-56433" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56433"/>
        <reference ref_id="RHSA-2025:20145" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20145"/>
        <reference ref_id="ALSA-2025:20145" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20145.html"/>
        <description>The shadow-utils packages include programs for converting UNIX password files to the shadow password format, as well as utilities for managing user and group accounts.   

Security Fix(es):  

  * shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise (CVE-2024-56433)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Low</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2334165" id="2334165"></bugzilla>
          <cve public="20241226" href="https://access.redhat.com/security/cve/CVE-2024-56433" impact="Low" cwe="CWE-1188" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2024-56433</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520145001" comment="shadow-utils is earlier than 2:4.15.0-8.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520145002" comment="shadow-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520145003" comment="shadow-utils-subid is earlier than 2:4.15.0-8.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520145004" comment="shadow-utils-subid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520145005" comment="shadow-utils-subid-devel is earlier than 2:4.15.0-8.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520145006" comment="shadow-utils-subid-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521936" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21936: valkey security update (Important)</title>
        <reference ref_id="CVE-2025-46817" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46817"/>
        <reference ref_id="CVE-2025-46818" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46818"/>
        <reference ref_id="CVE-2025-46819" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46819"/>
        <reference ref_id="CVE-2025-49844" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49844"/>
        <reference ref_id="RHSA-2025:21936" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21936"/>
        <reference ref_id="ALSA-2025:21936" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21936.html"/>
        <description>Valkey is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Valkey works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Valkey also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Valkey behave like a cache. You can use Valkey from most programming languages also.  

Security Fix(es):  

  * redis: Lua library commands may lead to integer overflow and potential RCE (CVE-2025-46817)
  * Redis: Redis: Authenticated users can execute LUA scripts as a different user (CVE-2025-46818)
  * Redis: Redis is vulnerable to DoS via specially crafted LUA scripts (CVE-2025-46819)
  * Redis: Redis Lua Use-After-Free may lead to remote code execution (CVE-2025-49844)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-24"/>
          <updated date="2025-11-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401258" id="2401258"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401292" id="2401292"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401322" id="2401322"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401324" id="2401324"></bugzilla>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-46817" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-46817</cve>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-46818" impact="Moderate" cwe="CWE-94" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N">CVE-2025-46818</cve>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-46819" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-46819</cve>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-49844" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-49844</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521936001" comment="valkey is earlier than 0:8.0.6-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519675001" comment="valkey is earlier than 0:8.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509002" comment="valkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521936002" comment="valkey-devel is earlier than 0:8.0.6-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519675002" comment="valkey-devel is earlier than 0:8.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509004" comment="valkey-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518154" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18154: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-11708" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11708"/>
        <reference ref_id="CVE-2025-11709" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11709"/>
        <reference ref_id="CVE-2025-11710" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11710"/>
        <reference ref_id="CVE-2025-11711" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11711"/>
        <reference ref_id="CVE-2025-11712" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11712"/>
        <reference ref_id="CVE-2025-11714" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11714"/>
        <reference ref_id="CVE-2025-11715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11715"/>
        <reference ref_id="RHSA-2025:18154" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18154"/>
        <reference ref_id="ALSA-2025:18154" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18154.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * thunderbird: firefox: Memory safety bugs (CVE-2025-11714)
  * thunderbird: firefox: Out of bounds read/write in a privileged process triggered by WebGL textures (CVE-2025-11709)
  * thunderbird: firefox: Cross-process information leaked due to malicious IPC messages (CVE-2025-11710)
  * thunderbird: firefox: Use-after-free in MediaTrackGraphImpl::GetInstance() (CVE-2025-11708)
  * thunderbird: firefox: An OBJECT tag type attribute overrode browser behavior on web resources without a content-type (CVE-2025-11712)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144 (CVE-2025-11715)
  * thunderbird: firefox: Some non-writable Object properties could be modified (CVE-2025-11711)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-15"/>
          <updated date="2025-10-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2403763" id="2403763"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403765" id="2403765"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403768" id="2403768"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403769" id="2403769"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403770" id="2403770"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403774" id="2403774"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403776" id="2403776"></bugzilla>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11708" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11708</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11709" impact="Important" cwe="(CWE-787|CWE-125)" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11709</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11710" impact="Important" cwe="CWE-497" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11710</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11711" impact="Important" cwe="CWE-284" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11711</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11712" impact="Moderate" cwe="CWE-436" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-11712</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11714" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11714</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11715" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11715</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202518154001" comment="firefox is earlier than 0:140.4.0-3.el10_0"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518153" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18153: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2025-55247" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55247"/>
        <reference ref_id="CVE-2025-55248" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55248"/>
        <reference ref_id="CVE-2025-55315" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55315"/>
        <reference ref_id="RHSA-2025:18153" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18153"/>
        <reference ref_id="ALSA-2025:18153" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18153.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.111 and .NET Runtime 9.0.10.Security Fix(es):  

  * dotnet: .NET Information Disclosure Vulnerability (CVE-2025-55248)
  * dotnet: .NET Security Feature Bypass Vulnerability (CVE-2025-55315)
  * dotnet: .NET Denial of Service Vulnerability (CVE-2025-55247)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-15"/>
          <updated date="2025-10-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2403083" id="2403083"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403085" id="2403085"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403086" id="2403086"></bugzilla>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-55247" impact="Moderate" cwe="CWE-377" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-55247</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-55248" impact="Important" cwe="CWE-319" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N">CVE-2025-55248</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-55315" impact="Important" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N">CVE-2025-55315</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153005" comment="dotnet-host is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601010" comment="dotnet-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153006" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153007" comment="dotnet-runtime-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153008" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153009" comment="dotnet-sdk-9.0 is earlier than 0:9.0.111-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153010" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.111-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153011" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.111-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153012" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.10-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153013" comment="dotnet-templates-9.0 is earlier than 0:9.0.111-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153014" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.111-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518153015" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.111-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521002" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21002: squid security update (Important)</title>
        <reference ref_id="CVE-2025-62168" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62168"/>
        <reference ref_id="RHSA-2025:21002" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21002"/>
        <reference ref_id="ALSA-2025:21002" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21002.html"/>
        <description>Squid is a high-performance proxy caching server for web clients, supporting FTP, and HTTP data objects.  

Security Fix(es):  

  * squid-cache: Squid vulnerable to information disclosure via authentication credential leakage in error handling (CVE-2025-62168)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2404736" id="2404736"></bugzilla>
          <cve public="20251017" href="https://access.redhat.com/security/cve/CVE-2025-62168" impact="Important" cwe="CWE-209" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N">CVE-2025-62168</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521002001" comment="squid is earlier than 7:6.10-6.el10_1.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521002002" comment="squid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520095" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20095: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2024-28956" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-28956"/>
        <reference ref_id="CVE-2024-36350" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-36350"/>
        <reference ref_id="CVE-2024-36357" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-36357"/>
        <reference ref_id="CVE-2024-49570" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-49570"/>
        <reference ref_id="CVE-2024-52332" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-52332"/>
        <reference ref_id="CVE-2024-53147" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-53147"/>
        <reference ref_id="CVE-2024-53216" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-53216"/>
        <reference ref_id="CVE-2024-53222" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-53222"/>
        <reference ref_id="CVE-2024-53241" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-53241"/>
        <reference ref_id="CVE-2024-54456" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-54456"/>
        <reference ref_id="CVE-2024-56662" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56662"/>
        <reference ref_id="CVE-2024-56675" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56675"/>
        <reference ref_id="CVE-2024-56690" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56690"/>
        <reference ref_id="CVE-2024-57901" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57901"/>
        <reference ref_id="CVE-2024-57902" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57902"/>
        <reference ref_id="CVE-2024-57941" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57941"/>
        <reference ref_id="CVE-2024-57942" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57942"/>
        <reference ref_id="CVE-2024-57977" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57977"/>
        <reference ref_id="CVE-2024-57981" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57981"/>
        <reference ref_id="CVE-2024-57984" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57984"/>
        <reference ref_id="CVE-2024-57986" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57986"/>
        <reference ref_id="CVE-2024-57987" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57987"/>
        <reference ref_id="CVE-2024-57988" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57988"/>
        <reference ref_id="CVE-2024-57989" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57989"/>
        <reference ref_id="CVE-2024-57995" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-57995"/>
        <reference ref_id="CVE-2024-58004" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58004"/>
        <reference ref_id="CVE-2024-58005" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58005"/>
        <reference ref_id="CVE-2024-58006" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58006"/>
        <reference ref_id="CVE-2024-58012" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58012"/>
        <reference ref_id="CVE-2024-58013" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58013"/>
        <reference ref_id="CVE-2024-58014" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58014"/>
        <reference ref_id="CVE-2024-58015" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58015"/>
        <reference ref_id="CVE-2024-58020" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58020"/>
        <reference ref_id="CVE-2024-58057" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58057"/>
        <reference ref_id="CVE-2024-58061" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58061"/>
        <reference ref_id="CVE-2024-58069" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58069"/>
        <reference ref_id="CVE-2024-58072" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58072"/>
        <reference ref_id="CVE-2024-58075" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58075"/>
        <reference ref_id="CVE-2024-58077" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58077"/>
        <reference ref_id="CVE-2024-58088" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-58088"/>
        <reference ref_id="CVE-2025-21633" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21633"/>
        <reference ref_id="CVE-2025-21647" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21647"/>
        <reference ref_id="CVE-2025-21652" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21652"/>
        <reference ref_id="CVE-2025-21655" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21655"/>
        <reference ref_id="CVE-2025-21671" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21671"/>
        <reference ref_id="CVE-2025-21680" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21680"/>
        <reference ref_id="CVE-2025-21691" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21691"/>
        <reference ref_id="CVE-2025-21693" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21693"/>
        <reference ref_id="CVE-2025-21696" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21696"/>
        <reference ref_id="CVE-2025-21702" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21702"/>
        <reference ref_id="CVE-2025-21726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21726"/>
        <reference ref_id="CVE-2025-21732" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21732"/>
        <reference ref_id="CVE-2025-21738" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21738"/>
        <reference ref_id="CVE-2025-21741" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21741"/>
        <reference ref_id="CVE-2025-21742" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21742"/>
        <reference ref_id="CVE-2025-21743" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21743"/>
        <reference ref_id="CVE-2025-21750" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21750"/>
        <reference ref_id="CVE-2025-21761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21761"/>
        <reference ref_id="CVE-2025-21765" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21765"/>
        <reference ref_id="CVE-2025-21771" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21771"/>
        <reference ref_id="CVE-2025-21777" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21777"/>
        <reference ref_id="CVE-2025-21785" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21785"/>
        <reference ref_id="CVE-2025-21786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21786"/>
        <reference ref_id="CVE-2025-21790" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21790"/>
        <reference ref_id="CVE-2025-21791" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21791"/>
        <reference ref_id="CVE-2025-21795" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21795"/>
        <reference ref_id="CVE-2025-21796" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21796"/>
        <reference ref_id="CVE-2025-21826" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21826"/>
        <reference ref_id="CVE-2025-21828" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21828"/>
        <reference ref_id="CVE-2025-21837" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21837"/>
        <reference ref_id="CVE-2025-21844" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21844"/>
        <reference ref_id="CVE-2025-21846" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21846"/>
        <reference ref_id="CVE-2025-21847" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21847"/>
        <reference ref_id="CVE-2025-21851" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21851"/>
        <reference ref_id="CVE-2025-21853" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21853"/>
        <reference ref_id="CVE-2025-21855" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21855"/>
        <reference ref_id="CVE-2025-21857" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21857"/>
        <reference ref_id="CVE-2025-21861" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21861"/>
        <reference ref_id="CVE-2025-21863" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21863"/>
        <reference ref_id="CVE-2025-21864" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21864"/>
        <reference ref_id="CVE-2025-21976" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21976"/>
        <reference ref_id="CVE-2025-22056" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22056"/>
        <reference ref_id="CVE-2025-37749" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37749"/>
        <reference ref_id="CVE-2025-37994" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37994"/>
        <reference ref_id="CVE-2025-38116" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38116"/>
        <reference ref_id="CVE-2025-38369" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38369"/>
        <reference ref_id="CVE-2025-38412" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38412"/>
        <reference ref_id="CVE-2025-38468" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38468"/>
        <reference ref_id="RHSA-2025:20095" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20095"/>
        <reference ref_id="ALSA-2025:20095" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20095.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: xen: Xen hypercall page unsafe against speculative attacks (Xen Security Advisory 466) (CVE-2024-53241)
  * kernel: exfat: fix out-of-bounds access of directory entries (CVE-2024-53147)
  * kernel: zram: fix NULL pointer in comp_algorithm_show() (CVE-2024-53222)
  * kernel: nfsd: release svc_expkey/svc_export with rcu_work (CVE-2024-53216)
  * kernel: acpi: nfit: vmalloc-out-of-bounds Read in acpi_nfit_ctl (CVE-2024-56662)
  * kernel: bpf: Fix UAF via mismatching bpf_prog/attachment RCU flavors (CVE-2024-56675)
  * kernel: crypto: pcrypt - Call crypto layer directly when padata_do_parallel() return -EBUSY (CVE-2024-56690)
  * kernel: igb: Fix potential invalid memory access in igb_init_module() (CVE-2024-52332)
  * kernel: af_packet: fix vlan_get_protocol_dgram() vs MSG_PEEK (CVE-2024-57901)
  * kernel: af_packet: fix vlan_get_tci() vs MSG_PEEK (CVE-2024-57902)
  * kernel: io_uring/sqpoll: zero sqd-&gt;thread on tctx errors (CVE-2025-21633)
  * kernel: ipvlan: Fix use-after-free in ipvlan_get_iflink(). (CVE-2025-21652)
  * kernel: sched: sch_cake: add bounds checks to host bulk flow fairness counts (CVE-2025-21647)
  * kernel: io_uring/eventfd: ensure io_eventfd_signal() defers another RCU period (CVE-2025-21655)
  * kernel: netfs: Fix the (non-)cancellation of copy when cache is temporarily disabled (CVE-2024-57941)
  * kernel: netfs: Fix ceph copy to cache on write-begin (CVE-2024-57942)
  * kernel: zram: fix potential UAF of zram table (CVE-2025-21671)
  * kernel: pktgen: Avoid out-of-bounds access in get_imix_entries (CVE-2025-21680)
  * kernel: mm: zswap: properly synchronize freeing resources during CPU hotunplug (CVE-2025-21693)
  * kernel: cachestat: fix page cache statistics permission checking (CVE-2025-21691)
  * kernel: mm: clear uffd-wp PTE/PMD state on mremap() (CVE-2025-21696)
  * kernel: pfifo_tail_enqueue: Drop new packet when sch-&gt;limit == 0 (CVE-2025-21702)
  * kernel: RDMA/mlx5: Fix a race for an ODP MR which leads to CQE with error (CVE-2025-21732)
  * kernel: NFSD: fix hang in nfsd4_shutdown_callback (CVE-2025-21795)
  * kernel: NFS: Fix potential buffer overflowin nfs_sysfs_link_rpc_client() (CVE-2024-54456)
  * kernel: Bluetooth: btrtl: check for NULL in btrtl_setup_realtek() (CVE-2024-57987)
  * kernel: wifi: brcmsmac: add gain range check to wlc_phy_iqcal_gainparams_nphy() (CVE-2024-58014)
  * kernel: Bluetooth: btbcm: Fix NULL deref in btbcm_get_board_name() (CVE-2024-57988)
  * kernel: drm/xe/tracing: Fix a potential TP_printk UAF (CVE-2024-49570)
  * kernel: media: intel/ipu6: remove cpu latency qos request on error (CVE-2024-58004)
  * kernel: usbnet: ipheth: use static NDP16 location in URB (CVE-2025-21742)
  * kernel: usbnet: ipheth: fix possible overflow in DPE length check (CVE-2025-21743)
  * kernel: wifi: mt76: mt7925: fix NULL deref check in mt7925_change_vif_links (CVE-2024-57989)
  * kernel: wifi: ath12k: Fix for out-of bound access error (CVE-2024-58015)
  * kernel: wifi: ath12k: fix read pointer after free in ath12k_mac_assign_vif_to_vdev() (CVE-2024-57995)
  * kernel: nfsd: clear acl_access/acl_default after releasing them (CVE-2025-21796)
  * kernel: workqueue: Put the pwq after detaching the rescuer from the pool (CVE-2025-21786)
  * kernel: tpm: Change to kvalloc() in eventlog/acpi.c (CVE-2024-58005)
  * kernel: Bluetooth: MGMT: Fix slab-use-after-free Read in mgmt_remove_adv_monitor_sync (CVE-2024-58013)
  * kernel: ring-buffer: Validate the persistent meta data subbuf array (CVE-2025-21777)
  * kernel: ata: libata-sff: Ensure that we cannot write outside the allocated buffer (CVE-2025-21738)
  * kernel: HID: core: Fix assumption that Resolution Multipliers must be in Logical Collections (CVE-2024-57986)
  * kernel: padata: avoid UAF for reorder_work (CVE-2025-21726)
  * kernel: vrf: use RCU protection in l3mdev_l3_out() (CVE-2025-21791)
  * kernel: HID: multitouch: Add NULL check in mt_input_configured (CVE-2024-58020)
  * kernel: i3c: dw: Fix use-after-free in dw_i3c_master driver due to race condition (CVE-2024-57984)
  * kernel: openvswitch: use RCU protection in ovs_vport_cmd_fill_info() (CVE-2025-21761)
  * kernel: sched_ext: Fix incorrect autogroup migration detection (CVE-2025-21771)
  * kernel: usb: xhci: Fix NULL pointer dereference on certain command aborts (CVE-2024-57981)
  * kernel: memcg: fix soft lockup in the OOM process (CVE-2024-57977)
  * kernel: vxlan: check vxlan_vnigroup_init() return value (CVE-2025-21790)
  * kernel: usbnet: ipheth: fix DPE OoB read (CVE-2025-21741)
  * kernel: arm64: cacheinfo: Avoid out-of-bounds write to cacheinfo array (CVE-2025-21785)
  * kernel: ipv6: use RCU protection in ip6_default_advmss() (CVE-2025-21765)
  * kernel: PCI: dwc: ep: Prevent changing BAR size/flags in pci_epc_set_bar() (CVE-2024-58006)
  * kernel: ASoC: SOF: Intel: hda-dai: Ensure DAI widget is valid during params (CVE-2024-58012)
  * kernel: wifi: brcmfmac: Check the return value of of_property_read_string_index() (CVE-2025-21750)
  * kernel: wifi: rtlwifi: remove unused check_buddy_priv (CVE-2024-58072)
  * kernel: rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read (CVE-2024-58069)
  * kernel: wifi: mac80211: prohibit deactivating all links (CVE-2024-58061)
  * kernel: idpf: convert workqueues to unbound (CVE-2024-58057)
  * kernel: wifi: mac80211: don't flush non-uploaded STAs (CVE-2025-21828)
  * kernel: netfilter: nf_tables: reject mismatching sum of field_len with set key length (CVE-2025-21826)
  * kernel: ASoC: soc-pcm: don't use soc_pcm_ret() on .prepare callback (CVE-2024-58077)
  * kernel: crypto: tegra - do not transfer req when tegra init fails (CVE-2024-58075)
  * kernel: io_uring/uring_cmd: unconditionally copy SQEs at prep time (CVE-2025-21837)
  * kernel: information leak via transient execution vulnerability in some AMD processors (CVE-2024-36350)
  * kernel: transient execution vulnerability in some AMD processors (CVE-2024-36357)
  * kernel: net/sched: cls_api: fix error handling causing NULL dereference (CVE-2025-21857)
  * kernel: bpf: Fix softlockup in arena_map_free on 64k page kernel (CVE-2025-21851)
  * kernel: ibmvnic: Don't reference skb after sending to VIOS (CVE-2025-21855)
  * kernel: smb: client: Add check for next_buffer in receive_encrypted_standard() (CVE-2025-21844)
  * kernel: bpf: avoid holding freeze_mutex during mmap operation (CVE-2025-21853)
  * kernel: ASoC: SOF: stream-ipc: Check for cstream nullity in sof_ipc_msg_data() (CVE-2025-21847)
  * kernel: tcp: drop secpath at the same time as we currently drop dst (CVE-2025-21864)
  * kernel: bpf: Fix deadlock when freeing cgroup storage (CVE-2024-58088)
  * kernel: acct: perform last write from workqueue (CVE-2025-21846)
  * kernel: mm/migrate_device: don't add folio to be freed to LRU in migrate_device_finalize() (CVE-2025-21861)
  * kernel: io_uring: prevent opcode speculation (CVE-2025-21863)
  * kernel: fbdev: hyperv_fb: Allow graceful removal of framebuffer (CVE-2025-21976)
  * kernel: netfilter: nft_tunnel: fix geneve_opt type confusion addition (CVE-2025-22056)
  * kernel: net: ppp: Add bound checking for skb data on ppp_sync_txmung (CVE-2025-37749)
  * microcode_ctl: From CVEorg collector (CVE-2024-28956)
  * kernel: usb: typec: ucsi: displayport: Fix NULL pointer access (CVE-2025-37994)
  * kernel: wifi: ath12k: fix uaf in ath12k_core_init() (CVE-2025-38116)
  * kernel: platform/x86: dell-wmi-sysman: Fix WMI data block retrieval in sysfs callbacks (CVE-2025-38412)
  * kernel: dmaengine: idxd: Check availability of workqueue allocated by idxd wq driver before using (CVE-2025-38369)
  * kernel: net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree (CVE-2025-38468)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2331326" id="2331326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2333985" id="2333985"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2334373" id="2334373"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2334415" id="2334415"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2334547" id="2334547"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2334548" id="2334548"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2334676" id="2334676"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2337121" id="2337121"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2338185" id="2338185"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2338211" id="2338211"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2338813" id="2338813"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2338821" id="2338821"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2338828" id="2338828"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2338998" id="2338998"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2339130" id="2339130"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2339141" id="2339141"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2343172" id="2343172"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2343186" id="2343186"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2344684" id="2344684"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2344687" id="2344687"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2345240" id="2345240"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2346272" id="2346272"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348522" id="2348522"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348523" id="2348523"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348541" id="2348541"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348543" id="2348543"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348547" id="2348547"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348550" id="2348550"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348556" id="2348556"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348561" id="2348561"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348567" id="2348567"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348572" id="2348572"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348574" id="2348574"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348577" id="2348577"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348581" id="2348581"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348584" id="2348584"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348587" id="2348587"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348590" id="2348590"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348592" id="2348592"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348593" id="2348593"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348595" id="2348595"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348597" id="2348597"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348600" id="2348600"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348601" id="2348601"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348602" id="2348602"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348603" id="2348603"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348612" id="2348612"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348617" id="2348617"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348620" id="2348620"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348621" id="2348621"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348625" id="2348625"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348629" id="2348629"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348630" id="2348630"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348645" id="2348645"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348647" id="2348647"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348650" id="2348650"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2348656" id="2348656"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350363" id="2350363"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350364" id="2350364"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350373" id="2350373"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350375" id="2350375"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350386" id="2350386"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350392" id="2350392"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350396" id="2350396"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350397" id="2350397"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350589" id="2350589"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350725" id="2350725"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350726" id="2350726"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351605" id="2351605"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351606" id="2351606"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351608" id="2351608"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351612" id="2351612"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351613" id="2351613"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351616" id="2351616"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351618" id="2351618"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351620" id="2351620"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351624" id="2351624"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351625" id="2351625"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2351629" id="2351629"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2356664" id="2356664"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2360215" id="2360215"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2363332" id="2363332"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2366125" id="2366125"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2369184" id="2369184"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376076" id="2376076"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383398" id="2383398"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383432" id="2383432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383913" id="2383913"></bugzilla>
          <cve public="20250513" href="https://access.redhat.com/security/cve/CVE-2024-28956" impact="Moderate" cwe="CWE-1421" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N">CVE-2024-28956</cve>
          <cve public="20250708" href="https://access.redhat.com/security/cve/CVE-2024-36350" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N">CVE-2024-36350</cve>
          <cve public="20250708" href="https://access.redhat.com/security/cve/CVE-2024-36357" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N">CVE-2024-36357</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-49570" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2024-49570</cve>
          <cve public="20250111" href="https://access.redhat.com/security/cve/CVE-2024-52332" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-52332</cve>
          <cve public="20241224" href="https://access.redhat.com/security/cve/CVE-2024-53147" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-53147</cve>
          <cve public="20241227" href="https://access.redhat.com/security/cve/CVE-2024-53216" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2024-53216</cve>
          <cve public="20241227" href="https://access.redhat.com/security/cve/CVE-2024-53222" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-53222</cve>
          <cve public="20241217" href="https://access.redhat.com/security/cve/CVE-2024-53241" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N">CVE-2024-53241</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-54456" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2024-54456</cve>
          <cve public="20241227" href="https://access.redhat.com/security/cve/CVE-2024-56662" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2024-56662</cve>
          <cve public="20241227" href="https://access.redhat.com/security/cve/CVE-2024-56675" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2024-56675</cve>
          <cve public="20241228" href="https://access.redhat.com/security/cve/CVE-2024-56690" impact="Moderate" cwe="CWE-703" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-56690</cve>
          <cve public="20250115" href="https://access.redhat.com/security/cve/CVE-2024-57901" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57901</cve>
          <cve public="20250115" href="https://access.redhat.com/security/cve/CVE-2024-57902" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57902</cve>
          <cve public="20250121" href="https://access.redhat.com/security/cve/CVE-2024-57941" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57941</cve>
          <cve public="20250121" href="https://access.redhat.com/security/cve/CVE-2024-57942" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57942</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57977" impact="Moderate" cwe="CWE-667" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57977</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57981" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57981</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57984" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2024-57984</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57986" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57986</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57987" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57987</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57988" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57988</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57989" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-57989</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-57995" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2024-57995</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58004" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58004</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58005" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58005</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58006" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58006</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58012" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58012</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58013" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2024-58013</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58014" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2024-58014</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58015" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2024-58015</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2024-58020" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58020</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2024-58057" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58057</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2024-58061" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58061</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2024-58069" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2024-58069</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2024-58072" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2024-58072</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2024-58075" impact="Moderate" cwe="CWE-252" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2024-58075</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2024-58077" impact="Low" cwe="CWE-400" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58077</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2024-58088" impact="Moderate" cwe="CWE-667" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2024-58088</cve>
          <cve public="20250119" href="https://access.redhat.com/security/cve/CVE-2025-21633" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21633</cve>
          <cve public="20250119" href="https://access.redhat.com/security/cve/CVE-2025-21647" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21647</cve>
          <cve public="20250119" href="https://access.redhat.com/security/cve/CVE-2025-21652" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21652</cve>
          <cve public="20250120" href="https://access.redhat.com/security/cve/CVE-2025-21655" impact="Moderate" cwe="CWE-362">CVE-2025-21655</cve>
          <cve public="20250131" href="https://access.redhat.com/security/cve/CVE-2025-21671" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21671</cve>
          <cve public="20250131" href="https://access.redhat.com/security/cve/CVE-2025-21680" impact="Moderate" cwe="CWE-129" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21680</cve>
          <cve public="20250210" href="https://access.redhat.com/security/cve/CVE-2025-21691" impact="Moderate" cwe="CWE-863" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21691</cve>
          <cve public="20250210" href="https://access.redhat.com/security/cve/CVE-2025-21693" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21693</cve>
          <cve public="20250212" href="https://access.redhat.com/security/cve/CVE-2025-21696" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21696</cve>
          <cve public="20250218" href="https://access.redhat.com/security/cve/CVE-2025-21702" impact="Moderate" cwe="CWE-438" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21702</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21726" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21726</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21732" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21732</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21738" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21738</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21741" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21741</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21742" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21742</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21743" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21743</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21750" impact="Low" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21750</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21761" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21761</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21765" impact="Moderate" cwe="CWE-414" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21765</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21771" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21771</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21777" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21777</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21785" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21785</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21786" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21786</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21790" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21790</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21791" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21791</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21795" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21795</cve>
          <cve public="20250227" href="https://access.redhat.com/security/cve/CVE-2025-21796" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21796</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2025-21826" impact="Moderate" cwe="CWE-682" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H">CVE-2025-21826</cve>
          <cve public="20250306" href="https://access.redhat.com/security/cve/CVE-2025-21828" impact="Moderate" cwe="CWE-20" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21828</cve>
          <cve public="20250307" href="https://access.redhat.com/security/cve/CVE-2025-21837" impact="Moderate">CVE-2025-21837</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21844" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21844</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21846" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21846</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21847" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21847</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21851" impact="Low" cwe="CWE-667" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L">CVE-2025-21851</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21853" impact="Moderate" cwe="CWE-833" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21853</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21855" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-21855</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21857" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21857</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21861" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21861</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21863" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-21863</cve>
          <cve public="20250312" href="https://access.redhat.com/security/cve/CVE-2025-21864" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21864</cve>
          <cve public="20250401" href="https://access.redhat.com/security/cve/CVE-2025-21976" impact="Low" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-21976</cve>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22056" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22056</cve>
          <cve public="20250501" href="https://access.redhat.com/security/cve/CVE-2025-37749" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H">CVE-2025-37749</cve>
          <cve public="20250529" href="https://access.redhat.com/security/cve/CVE-2025-37994" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-37994</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38116" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38116</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38369" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38369</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38412" impact="Moderate" cwe="CWE-129" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H">CVE-2025-38412</cve>
          <cve public="20250728" href="https://access.redhat.com/security/cve/CVE-2025-38468" impact="Moderate" cwe="CWE-754" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38468</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095001" comment="kernel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095002" comment="kernel-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095003" comment="kernel-debug is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095004" comment="kernel-debug-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095011" comment="kernel-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095013" comment="kernel-headers is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095014" comment="kernel-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095015" comment="kernel-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095019" comment="kernel-rt is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095020" comment="kernel-rt-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095021" comment="kernel-rt-debug is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095022" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095023" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095024" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095025" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095026" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095027" comment="kernel-rt-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095028" comment="kernel-rt-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095031" comment="kernel-tools is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095032" comment="kernel-tools-libs is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095033" comment="kernel-uki-virt is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095035" comment="perf is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095036" comment="python3-perf is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095037" comment="rtla is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095038" comment="rv is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095039" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095046" comment="kernel-64k is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095047" comment="kernel-64k-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095048" comment="kernel-64k-debug is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095055" comment="kernel-64k-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095056" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095057" comment="kernel-64k-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095058" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095059" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095060" comment="kernel-rt-64k is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095061" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095062" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095063" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095064" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095065" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095066" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095067" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095068" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095069" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095070" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095071" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095072" comment="kernel-cross-headers is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095073" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095074" comment="libperf is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095076" comment="kernel-doc is earlier than 0:6.12.0-124.8.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521038" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21038: kea security update (Important)</title>
        <reference ref_id="CVE-2025-11232" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11232"/>
        <reference ref_id="RHSA-2025:21038" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21038"/>
        <reference ref_id="ALSA-2025:21038" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21038.html"/>
        <description>DHCP implementation from Internet Systems Consortium, Inc. that features fully functional DHCPv4, DHCPv6 and Dynamic DNS servers. Both DHCP servers fully support server discovery, address assignment, renewal, rebinding and release. The DHCPv6 server supports prefix delegation. Both servers support DNS Update mechanism, using stand-alone DDNS daemon.  

Security Fix(es):  

  * kea: Invalid characters cause assert (CVE-2025-11232)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407178" id="2407178"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-11232" impact="Important" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-11232</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521038001" comment="kea is earlier than 0:3.0.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178002" comment="kea is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521038002" comment="kea-hooks is earlier than 0:3.0.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178004" comment="kea-hooks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521038003" comment="kea-libs is earlier than 0:3.0.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178006" comment="kea-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521038004" comment="kea-keama is earlier than 0:3.0.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178008" comment="kea-keama is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521038005" comment="kea-doc is earlier than 0:3.0.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178010" comment="kea-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518824" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18824: java-21-openjdk security update (Moderate)</title>
        <reference ref_id="CVE-2025-53057" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53057"/>
        <reference ref_id="CVE-2025-53066" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53066"/>
        <reference ref_id="CVE-2025-61748" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61748"/>
        <reference ref_id="RHSA-2025:18824" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18824"/>
        <reference ref_id="ALSA-2025:18824" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18824.html"/>
        <description>The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Enhance Path Factories (CVE-2025-53066)
  * JDK: Enhance Certificate Handling (CVE-2025-53057)
  * JDK: Enhance String Handling (CVE-2025-61748)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-22"/>
          <updated date="2025-10-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53057" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2025-53057</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53066" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L">CVE-2025-53066</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-61748" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2025-61748</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824001" comment="java-21-openjdk is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508002" comment="java-21-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824002" comment="java-21-openjdk-demo is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508004" comment="java-21-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824003" comment="java-21-openjdk-devel is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508006" comment="java-21-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824004" comment="java-21-openjdk-headless is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508008" comment="java-21-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824005" comment="java-21-openjdk-javadoc is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508010" comment="java-21-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824006" comment="java-21-openjdk-javadoc-zip is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508012" comment="java-21-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824007" comment="java-21-openjdk-jmods is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508014" comment="java-21-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824008" comment="java-21-openjdk-src is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508016" comment="java-21-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824009" comment="java-21-openjdk-static-libs is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508018" comment="java-21-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824010" comment="java-21-openjdk-demo-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508020" comment="java-21-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824011" comment="java-21-openjdk-demo-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508022" comment="java-21-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824012" comment="java-21-openjdk-devel-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508024" comment="java-21-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824013" comment="java-21-openjdk-devel-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508026" comment="java-21-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824014" comment="java-21-openjdk-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508028" comment="java-21-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824015" comment="java-21-openjdk-headless-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508030" comment="java-21-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824016" comment="java-21-openjdk-headless-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508032" comment="java-21-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824017" comment="java-21-openjdk-jmods-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508034" comment="java-21-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824018" comment="java-21-openjdk-jmods-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508036" comment="java-21-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824019" comment="java-21-openjdk-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508038" comment="java-21-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824020" comment="java-21-openjdk-src-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508040" comment="java-21-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824021" comment="java-21-openjdk-src-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508042" comment="java-21-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824022" comment="java-21-openjdk-static-libs-fastdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508044" comment="java-21-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518824023" comment="java-21-openjdk-static-libs-slowdebug is earlier than 1:21.0.9.0.10-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508046" comment="java-21-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521013" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21013: libssh security update (Moderate)</title>
        <reference ref_id="CVE-2025-5318" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5318"/>
        <reference ref_id="RHSA-2025:21013" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21013"/>
        <reference ref_id="ALSA-2025:21013" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21013.html"/>
        <description>libssh is a library which implements the SSH protocol. It can be used to implement client and server applications.  

Security Fix(es):  

  * libssh: out-of-bounds read in sftp_handle() (CVE-2025-5318)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2369131" id="2369131"></bugzilla>
          <cve public="20250624" href="https://access.redhat.com/security/cve/CVE-2025-5318" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2025-5318</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521013001" comment="libssh is earlier than 0:0.11.1-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231001" comment="libssh is earlier than 0:0.11.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231002" comment="libssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521013002" comment="libssh-devel is earlier than 0:0.11.1-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231003" comment="libssh-devel is earlier than 0:0.11.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231004" comment="libssh-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521013003" comment="libssh-config is earlier than 0:0.11.1-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231005" comment="libssh-config is earlier than 0:0.11.1-4.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231006" comment="libssh-config is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518320" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18320: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-11708" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11708"/>
        <reference ref_id="CVE-2025-11709" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11709"/>
        <reference ref_id="CVE-2025-11710" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11710"/>
        <reference ref_id="CVE-2025-11711" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11711"/>
        <reference ref_id="CVE-2025-11712" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11712"/>
        <reference ref_id="CVE-2025-11714" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11714"/>
        <reference ref_id="CVE-2025-11715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11715"/>
        <reference ref_id="RHSA-2025:18320" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18320"/>
        <reference ref_id="ALSA-2025:18320" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18320.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * thunderbird: firefox: Memory safety bugs (CVE-2025-11714)
  * thunderbird: firefox: Out of bounds read/write in a privileged process triggered by WebGL textures (CVE-2025-11709)
  * thunderbird: firefox: Cross-process information leaked due to malicious IPC messages (CVE-2025-11710)
  * thunderbird: firefox: Use-after-free in MediaTrackGraphImpl::GetInstance() (CVE-2025-11708)
  * thunderbird: firefox: An OBJECT tag type attribute overrode browser behavior on web resources without a content-type (CVE-2025-11712)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144 (CVE-2025-11715)
  * thunderbird: firefox: Some non-writable Object properties could be modified (CVE-2025-11711)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-20"/>
          <updated date="2025-10-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2403763" id="2403763"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403765" id="2403765"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403768" id="2403768"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403769" id="2403769"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403770" id="2403770"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403774" id="2403774"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403776" id="2403776"></bugzilla>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11708" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11708</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11709" impact="Important" cwe="(CWE-787|CWE-125)" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11709</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11710" impact="Important" cwe="CWE-497" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11710</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11711" impact="Important" cwe="CWE-284" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11711</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11712" impact="Moderate" cwe="CWE-436" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-11712</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11714" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11714</cve>
          <cve public="20251014" href="https://access.redhat.com/security/cve/CVE-2025-11715" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-11715</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202518320001" comment="thunderbird is earlier than 0:140.4.0-2.el10_0.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521036" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21036: pcs security update (Important)</title>
        <reference ref_id="CVE-2025-59830" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59830"/>
        <reference ref_id="CVE-2025-61770" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61770"/>
        <reference ref_id="CVE-2025-61771" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61771"/>
        <reference ref_id="CVE-2025-61772" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61772"/>
        <reference ref_id="CVE-2025-61919" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61919"/>
        <reference ref_id="RHSA-2025:21036" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21036"/>
        <reference ref_id="ALSA-2025:21036" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21036.html"/>
        <description>The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.  

Security Fix(es):  

  * rubygem-rack: Rack QueryParser has an unsafe default allowing params_limit bypass via semicolon-separated parameters (CVE-2025-59830)
  * rack: Rack's unbounded multipart preamble buffering enables DoS (memory exhaustion) (CVE-2025-61770)
  * rack: Rack's multipart parser buffers large non?file fields entirely in memory, enabling DoS (memory exhaustion) (CVE-2025-61771)
  * rack: Rack memory exhaustion denial of service (CVE-2025-61772)
  * rubygem-rack: Unbounded read in `Rack::Request` form parsing can lead to memory exhaustion (CVE-2025-61919)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2398167" id="2398167"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402174" id="2402174"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402175" id="2402175"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402200" id="2402200"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403180" id="2403180"></bugzilla>
          <cve public="20250925" href="https://access.redhat.com/security/cve/CVE-2025-59830" impact="Moderate" cwe="(CWE-400|CWE-770)" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59830</cve>
          <cve public="20251007" href="https://access.redhat.com/security/cve/CVE-2025-61770" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61770</cve>
          <cve public="20251007" href="https://access.redhat.com/security/cve/CVE-2025-61771" impact="Important" cwe="CWE-1284" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61771</cve>
          <cve public="20251007" href="https://access.redhat.com/security/cve/CVE-2025-61772" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-61772</cve>
          <cve public="20251010" href="https://access.redhat.com/security/cve/CVE-2025-61919" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61919</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036001" comment="pcs-snmp is earlier than 0:0.12.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036002" comment="pcs-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036003" comment="pcs is earlier than 0:0.12.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036004" comment="pcs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036005" comment="cockpit-ha-cluster is earlier than 0:0.12.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036006" comment="cockpit-ha-cluster is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519156" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19156: libtiff security update (Important)</title>
        <reference ref_id="CVE-2025-9900" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9900"/>
        <reference ref_id="RHSA-2025:19156" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19156"/>
        <reference ref_id="ALSA-2025:19156" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19156.html"/>
        <description>The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.  

Security Fix(es):  

  * libtiff: Libtiff Write-What-Where (CVE-2025-9900)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-28"/>
          <updated date="2025-10-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2392784" id="2392784"></bugzilla>
          <cve public="20250922" href="https://access.redhat.com/security/cve/CVE-2025-9900" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-9900</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156001" comment="libtiff is earlier than 0:4.6.0-6.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520998001" comment="libtiff is earlier than 0:4.6.0-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156002" comment="libtiff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156003" comment="libtiff-devel is earlier than 0:4.6.0-6.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520998002" comment="libtiff-devel is earlier than 0:4.6.0-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156004" comment="libtiff-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156005" comment="libtiff-tools is earlier than 0:4.6.0-6.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520998003" comment="libtiff-tools is earlier than 0:4.6.0-6.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156006" comment="libtiff-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521015" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21015: vim security update (Moderate)</title>
        <reference ref_id="CVE-2025-53905" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53905"/>
        <reference ref_id="CVE-2025-53906" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53906"/>
        <reference ref_id="RHSA-2025:21015" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21015"/>
        <reference ref_id="ALSA-2025:21015" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21015.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: Vim path traversal (CVE-2025-53906)
  * vim: Vim path traversial (CVE-2025-53905)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2380360" id="2380360"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2380362" id="2380362"></bugzilla>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-53905" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:L">CVE-2025-53905</cve>
          <cve public="20250715" href="https://access.redhat.com/security/cve/CVE-2025-53906" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:L">CVE-2025-53906</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015001" comment="vim-X11 is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913001" comment="vim-X11 is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015002" comment="vim-common is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913003" comment="vim-common is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015003" comment="vim-enhanced is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913005" comment="vim-enhanced is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015004" comment="vim-minimal is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913007" comment="vim-minimal is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015005" comment="xxd is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913009" comment="xxd is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015006" comment="vim-data is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913011" comment="vim-data is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521015007" comment="vim-filesystem is earlier than 2:9.1.083-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913013" comment="vim-filesystem is earlier than 2:9.1.083-5.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521931" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21931: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-39730" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39730"/>
        <reference ref_id="CVE-2025-39955" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39955"/>
        <reference ref_id="RHSA-2025:21931" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21931"/>
        <reference ref_id="ALSA-2025:21931" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21931.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: NFS: Fix filehandle bounds checking in nfs_fh_to_dentry() (CVE-2025-39730)
  * kernel: tcp: Clear tcp_sk(sk)-&gt;fastopen_rsk in tcp_disconnect() (CVE-2025-39955)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-24"/>
          <updated date="2025-11-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2393731" id="2393731"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402699" id="2402699"></bugzilla>
          <cve public="20250907" href="https://access.redhat.com/security/cve/CVE-2025-39730" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-39730</cve>
          <cve public="20251009" href="https://access.redhat.com/security/cve/CVE-2025-39955" impact="Moderate" cwe="CWE-213" cvss3="CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39955</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931001" comment="kernel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931002" comment="kernel-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931003" comment="kernel-debug is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931004" comment="kernel-debug-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931011" comment="kernel-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931013" comment="kernel-headers is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931014" comment="kernel-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931015" comment="kernel-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931018" comment="kernel-rt is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931019" comment="kernel-rt-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931030" comment="kernel-tools is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931034" comment="perf is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931035" comment="python3-perf is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931036" comment="rtla is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931037" comment="rv is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931045" comment="kernel-64k is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931046" comment="kernel-64k-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931073" comment="libperf is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521931075" comment="kernel-doc is earlier than 0:6.12.0-124.13.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202518152" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:18152: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2025-55247" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55247"/>
        <reference ref_id="CVE-2025-55248" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55248"/>
        <reference ref_id="CVE-2025-55315" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55315"/>
        <reference ref_id="RHSA-2025:18152" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:18152"/>
        <reference ref_id="ALSA-2025:18152" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-18152.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.121 and .NET Runtime 8.0.21.Security Fix(es):  

  * dotnet: .NET Information Disclosure Vulnerability (CVE-2025-55248)
  * dotnet: .NET Security Feature Bypass Vulnerability (CVE-2025-55315)
  * dotnet: .NET Denial of Service Vulnerability (CVE-2025-55247)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-10-15"/>
          <updated date="2025-10-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2403083" id="2403083"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403085" id="2403085"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2403086" id="2403086"></bugzilla>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-55247" impact="Moderate" cwe="CWE-377" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-55247</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-55248" impact="Important" cwe="CWE-319" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N">CVE-2025-55248</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-55315" impact="Important" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N">CVE-2025-55315</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152001" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152002" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152003" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152004" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152005" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152006" comment="dotnet-runtime-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152007" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152008" comment="dotnet-sdk-8.0 is earlier than 0:8.0.121-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152009" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.121-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152010" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.21-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152011" comment="dotnet-templates-8.0 is earlier than 0:8.0.121-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518152012" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.121-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521030" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21030: expat security update (Important)</title>
        <reference ref_id="CVE-2025-59375" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59375"/>
        <reference ref_id="RHSA-2025:21030" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21030"/>
        <reference ref_id="ALSA-2025:21030" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21030.html"/>
        <description>Expat is a C library for parsing XML documents.  

Security Fix(es):  

  * expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing (CVE-2025-59375)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2395108" id="2395108"></bugzilla>
          <cve public="20250915" href="https://access.redhat.com/security/cve/CVE-2025-59375" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-59375</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521030001" comment="expat is earlier than 0:2.7.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519403001" comment="expat is earlier than 0:2.7.1-1.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512002" comment="expat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521030002" comment="expat-devel is earlier than 0:2.7.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519403002" comment="expat-devel is earlier than 0:2.7.1-1.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512004" comment="expat-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520994" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20994: ipa security update (Important)</title>
        <reference ref_id="CVE-2025-7493" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-7493"/>
        <reference ref_id="RHSA-2025:20994" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20994"/>
        <reference ref_id="ALSA-2025:20994" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20994.html"/>
        <description>AlmaLinux Identity Management (IdM) is a centralized authentication, identity management, and authorization solution for both traditional and cloud-based enterprise environments.  

Security Fix(es):  

  * FreeIPA: idm: Privilege escalation from host to domain admin in FreeIPA (CVE-2025-7493)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2389448" id="2389448"></bugzilla>
          <cve public="20250930" href="https://access.redhat.com/security/cve/CVE-2025-7493" impact="Important" cwe="CWE-1220" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H">CVE-2025-7493</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994001" comment="ipa-server-encrypted-dns is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190012" comment="ipa-server-encrypted-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994002" comment="ipa-server-trust-ad is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190014" comment="ipa-server-trust-ad is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994003" comment="ipa-client is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190002" comment="ipa-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994004" comment="ipa-client-encrypted-dns is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190004" comment="ipa-client-encrypted-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994005" comment="ipa-client-epn is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190006" comment="ipa-client-epn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994006" comment="ipa-client-samba is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190008" comment="ipa-client-samba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994007" comment="ipa-server is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190010" comment="ipa-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994008" comment="ipa-server-dns is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190028" comment="ipa-server-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994009" comment="python3-ipaclient is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190030" comment="python3-ipaclient is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994010" comment="python3-ipalib is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190032" comment="python3-ipalib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994011" comment="python3-ipaserver is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190034" comment="python3-ipaserver is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994012" comment="ipa-client-common is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190016" comment="ipa-client-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994013" comment="ipa-common is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190018" comment="ipa-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994014" comment="ipa-selinux is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190020" comment="ipa-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994015" comment="ipa-selinux-luna is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190022" comment="ipa-selinux-luna is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994016" comment="ipa-selinux-nfast is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190024" comment="ipa-selinux-nfast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994017" comment="ipa-server-common is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190026" comment="ipa-server-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520994018" comment="python3-ipatests is earlier than 0:4.12.2-24.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259190036" comment="python3-ipatests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521032" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21032: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2025-4945" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-4945"/>
        <reference ref_id="CVE-2025-11021" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11021"/>
        <reference ref_id="RHSA-2025:21032" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21032"/>
        <reference ref_id="ALSA-2025:21032" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21032.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Integer Overflow in Cookie Expiration Date Handling in libsoup (CVE-2025-4945)
  * libsoup: Out-of-Bounds Read in Cookie Date Handling of libsoup HTTP Library (CVE-2025-11021)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2367175" id="2367175"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2399627" id="2399627"></bugzilla>
          <cve public="20250519" href="https://access.redhat.com/security/cve/CVE-2025-4945" impact="Low" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2025-4945</cve>
          <cve public="20250926" href="https://access.redhat.com/security/cve/CVE-2025-11021" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2025-11021</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521032001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518183001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_0.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521032002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518183002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_0.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521032003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518183003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_0.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521034" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21034: bind security update (Important)</title>
        <reference ref_id="CVE-2025-8677" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8677"/>
        <reference ref_id="CVE-2025-40778" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40778"/>
        <reference ref_id="CVE-2025-40780" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40780"/>
        <reference ref_id="RHSA-2025:21034" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21034"/>
        <reference ref_id="ALSA-2025:21034" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21034.html"/>
        <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.  

Security Fix(es):  

  * bind: Cache poisoning attacks with unsolicited RRs (CVE-2025-40778)
  * bind: Cache poisoning due to weak PRNG (CVE-2025-40780)
  * bind: Resource exhaustion via malformed DNSKEY handling (CVE-2025-8677)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2405827" id="2405827"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405829" id="2405829"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405830" id="2405830"></bugzilla>
          <cve public="20251022" href="https://access.redhat.com/security/cve/CVE-2025-8677" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-8677</cve>
          <cve public="20251022" href="https://access.redhat.com/security/cve/CVE-2025-40778" impact="Important" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N">CVE-2025-40778</cve>
          <cve public="20251022" href="https://access.redhat.com/security/cve/CVE-2025-40780" impact="Important" cwe="CWE-338" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N">CVE-2025-40780</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034001" comment="bind is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912001" comment="bind is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912002" comment="bind is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034002" comment="bind-chroot is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912003" comment="bind-chroot is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912004" comment="bind-chroot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034003" comment="bind-dnssec-utils is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912005" comment="bind-dnssec-utils is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912006" comment="bind-dnssec-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034004" comment="bind-libs is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912007" comment="bind-libs is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912008" comment="bind-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034005" comment="bind-utils is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912009" comment="bind-utils is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912010" comment="bind-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034006" comment="bind-devel is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912011" comment="bind-devel is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912012" comment="bind-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034007" comment="bind-license is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912013" comment="bind-license is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912014" comment="bind-license is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034008" comment="bind-doc is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912015" comment="bind-doc is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912016" comment="bind-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202522854" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:22854: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38737" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38737"/>
        <reference ref_id="CVE-2025-39925" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39925"/>
        <reference ref_id="CVE-2025-39979" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39979"/>
        <reference ref_id="CVE-2025-39981" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39981"/>
        <reference ref_id="CVE-2025-39982" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39982"/>
        <reference ref_id="CVE-2025-39983" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39983"/>
        <reference ref_id="CVE-2025-40047" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40047"/>
        <reference ref_id="CVE-2025-40058" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40058"/>
        <reference ref_id="CVE-2025-40185" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40185"/>
        <reference ref_id="RHSA-2025:22854" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:22854"/>
        <reference ref_id="ALSA-2025:22854" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-22854.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: cifs: Fix oops due to uninitialised variable (CVE-2025-38737)
  * kernel: can: j1939: implement NETDEV_UNREGISTER notification handler (CVE-2025-39925)
  * kernel: Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync (CVE-2025-39982)
  * kernel: Bluetooth: MGMT: Fix possible UAFs (CVE-2025-39981)
  * kernel: net/mlx5: fs, fix UAF in flow counter release (CVE-2025-39979)
  * kernel: Bluetooth: hci_event: Fix UAF in hci_conn_tx_dequeue (CVE-2025-39983)
  * kernel: io_uring/waitid: always prune wait queue entry in io_waitid_wait() (CVE-2025-40047)
  * kernel: iommu/vt-d: Disallow dirty tracking if incoherent page walk (CVE-2025-40058)
  * kernel: ice: ice_adapter: release xa entry on adapter allocation failure (CVE-2025-40185)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-08"/>
          <updated date="2025-12-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2393527" id="2393527"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2400629" id="2400629"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404100" id="2404100"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404105" id="2404105"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404109" id="2404109"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404117" id="2404117"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406758" id="2406758"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406776" id="2406776"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414741" id="2414741"></bugzilla>
          <cve public="20250905" href="https://access.redhat.com/security/cve/CVE-2025-38737" impact="Moderate" cwe="CWE-908" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-38737</cve>
          <cve public="20251001" href="https://access.redhat.com/security/cve/CVE-2025-39925" impact="Moderate" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-39925</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39979" impact="Moderate" cwe="CWE-911" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39979</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39981" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-39981</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39982" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39982</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39983" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39983</cve>
          <cve public="20251028" href="https://access.redhat.com/security/cve/CVE-2025-40047" impact="Moderate" cwe="CWE-662" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40047</cve>
          <cve public="20251028" href="https://access.redhat.com/security/cve/CVE-2025-40058" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H">CVE-2025-40058</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40185" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-40185</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854001" comment="kernel-debug-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854002" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854003" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854004" comment="kernel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854005" comment="kernel-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854006" comment="kernel-debug is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854007" comment="kernel-debug-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854008" comment="kernel-debug-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854009" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854010" comment="kernel-rt-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854011" comment="kernel-rt-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854012" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854013" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854014" comment="kernel-tools is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854015" comment="kernel-tools-libs is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854016" comment="kernel-uki-virt is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854017" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854018" comment="perf is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854019" comment="python3-perf is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854020" comment="rtla is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854021" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854022" comment="kernel-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854023" comment="kernel-devel-matched is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854024" comment="kernel-headers is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854025" comment="kernel-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854026" comment="kernel-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854027" comment="kernel-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854028" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854029" comment="kernel-rt is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854030" comment="kernel-rt-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854031" comment="kernel-rt-debug is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854032" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854033" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854034" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854035" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854036" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854037" comment="rv is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854045" comment="kernel-64k is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854046" comment="kernel-64k-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854073" comment="libperf is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522854075" comment="kernel-doc is earlier than 0:6.12.0-124.20.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520181" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20181: pam security update (Important)</title>
        <reference ref_id="CVE-2025-6020" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6020"/>
        <reference ref_id="RHSA-2025:20181" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20181"/>
        <reference ref_id="ALSA-2025:20181" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20181.html"/>
        <description>Pluggable Authentication Modules (PAM) provide a system to set up authentication policies without the need to recompile programs to handle authentication.  

Security Fix(es):  

  * linux-pam: Linux-pam directory Traversal (CVE-2025-6020)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2372512" id="2372512"></bugzilla>
          <cve public="20250617" href="https://access.redhat.com/security/cve/CVE-2025-6020" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-6020</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520181001" comment="pam is earlier than 0:1.6.1-8.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520181002" comment="pam is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520181003" comment="pam-devel is earlier than 0:1.6.1-8.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520181004" comment="pam-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520181005" comment="pam-libs is earlier than 0:1.6.1-8.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520181006" comment="pam-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521248" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21248: openssl security update (Moderate)</title>
        <reference ref_id="CVE-2025-9230" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9230"/>
        <reference ref_id="RHSA-2025:21248" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21248"/>
        <reference ref_id="ALSA-2025:21248" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21248.html"/>
        <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.  

Security Fix(es):  

  * openssl: Out-of-bounds read &amp; write in RFC 3211 KEK Unwrap (CVE-2025-9230)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-13"/>
          <updated date="2025-11-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2396054" id="2396054"></bugzilla>
          <cve public="20250930" href="https://access.redhat.com/security/cve/CVE-2025-9230" impact="Moderate" cwe="(CWE-787|CWE-125)" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-9230</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248001" comment="openssl is earlier than 1:3.5.1-4.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248002" comment="openssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248003" comment="openssl-devel is earlier than 1:3.5.1-4.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248004" comment="openssl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248005" comment="openssl-libs is earlier than 1:3.5.1-4.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248006" comment="openssl-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248007" comment="openssl-perl is earlier than 1:3.5.1-4.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248008" comment="openssl-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520155" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20155: binutils security update (Moderate)</title>
        <reference ref_id="CVE-2025-5244" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5244"/>
        <reference ref_id="RHSA-2025:20155" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20155"/>
        <reference ref_id="ALSA-2025:20155" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20155.html"/>
        <description>The binutils packages provide a collection of binary utilities for the manipulation of object code in various object file formats. It includes the ar, as, gprof, ld, nm, objcopy, objdump, ranlib, readelf, size, strings, strip, and addr2line utilities.  

Security Fix(es):  

  * binutils: GNU Binutils ld elflink.c elf_gc_sweep memory corruption (CVE-2025-5244)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2368763" id="2368763"></bugzilla>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5244" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-5244</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155001" comment="binutils is earlier than 0:2.41-58.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155002" comment="binutils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155003" comment="binutils-devel is earlier than 0:2.41-58.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155004" comment="binutils-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155005" comment="binutils-gold is earlier than 0:2.41-58.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155006" comment="binutils-gold is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521691" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21691: haproxy security update (Important)</title>
        <reference ref_id="CVE-2025-11230" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11230"/>
        <reference ref_id="RHSA-2025:21691" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21691"/>
        <reference ref_id="ALSA-2025:21691" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21691.html"/>
        <description>The haproxy packages provide a reliable, high-performance network load balancer for TCP and HTTP-based applications.  

Security Fix(es):  

  * haproxy: denial of service vulnerability in HAProxy mjson library (CVE-2025-11230)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-18"/>
          <updated date="2025-11-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2413003" id="2413003"></bugzilla>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-11230" impact="Important" cwe="CWE-407" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-11230</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521691001" comment="haproxy is earlier than 0:3.0.5-4.el10_1.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521691002" comment="haproxy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520126" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20126: openssh security update (Moderate)</title>
        <reference ref_id="CVE-2025-32728" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32728"/>
        <reference ref_id="RHSA-2025:20126" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20126"/>
        <reference ref_id="ALSA-2025:20126" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20126.html"/>
        <description>OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.  

Security Fix(es):  

  * openssh: OpenSSH SSHD Agent Forwarding and X11 Forwarding (CVE-2025-32728)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2358767" id="2358767"></bugzilla>
          <cve public="20250410" href="https://access.redhat.com/security/cve/CVE-2025-32728" impact="Moderate" cwe="CWE-440" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N">CVE-2025-32728</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126001" comment="openssh is earlier than 0:9.9p1-11.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126002" comment="openssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126003" comment="openssh-askpass is earlier than 0:9.9p1-11.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126004" comment="openssh-askpass is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126005" comment="openssh-clients is earlier than 0:9.9p1-11.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126006" comment="openssh-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126007" comment="openssh-keycat is earlier than 0:9.9p1-11.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126008" comment="openssh-keycat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126009" comment="openssh-keysign is earlier than 0:9.9p1-11.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126010" comment="openssh-keysign is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126011" comment="openssh-server is earlier than 0:9.9p1-11.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126012" comment="openssh-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202610223" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:10223: grafana security update (Important)</title>
        <reference ref_id="CVE-2026-27877" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27877"/>
        <reference ref_id="RHSA-2026:10223" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:10223"/>
        <reference ref_id="ALSA-2026:10223" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-10223.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * grafana: Grafana: Information disclosure of data-source passwords via public dashboards (CVE-2026-27877)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-23"/>
          <updated date="2026-04-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2452293" id="2452293"></bugzilla>
          <cve public="20260327" href="https://access.redhat.com/security/cve/CVE-2026-27877" impact="Important" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-27877</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610223001" comment="grafana is earlier than 0:10.2.6-24.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610223002" comment="grafana-selinux is earlier than 0:10.2.6-24.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202522395" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:22395: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-22068" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-22068"/>
        <reference ref_id="CVE-2025-38724" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38724"/>
        <reference ref_id="CVE-2025-39883" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39883"/>
        <reference ref_id="CVE-2025-39898" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39898"/>
        <reference ref_id="CVE-2025-39918" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39918"/>
        <reference ref_id="CVE-2025-39971" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39971"/>
        <reference ref_id="RHSA-2025:22395" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:22395"/>
        <reference ref_id="ALSA-2025:22395" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-22395.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ublk: make sure ubq-&gt;canceling is set when queue is frozen (CVE-2025-22068)
  * kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() (CVE-2025-38724)
  * kernel: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory (CVE-2025-39883)
  * kernel: e1000e: fix heap overflow in e1000_set_eeprom (CVE-2025-39898)
  * kernel: wifi: mt76: fix linked list corruption (CVE-2025-39918)
  * kernel: i40e: fix idx validation in config queues msg (CVE-2025-39971)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-01"/>
          <updated date="2025-12-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360225" id="2360225"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393172" id="2393172"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2397553" id="2397553"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2400598" id="2400598"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2400628" id="2400628"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404108" id="2404108"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2025-22068" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-22068</cve>
          <cve public="20250904" href="https://access.redhat.com/security/cve/CVE-2025-38724" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38724</cve>
          <cve public="20250923" href="https://access.redhat.com/security/cve/CVE-2025-39883" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39883</cve>
          <cve public="20251001" href="https://access.redhat.com/security/cve/CVE-2025-39898" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39898</cve>
          <cve public="20251001" href="https://access.redhat.com/security/cve/CVE-2025-39918" impact="Moderate" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39918</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39971" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39971</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395001" comment="rtla is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395002" comment="kernel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395003" comment="kernel-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395004" comment="kernel-debug is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395005" comment="kernel-debug-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395006" comment="kernel-debug-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395007" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395008" comment="kernel-debug-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395009" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395010" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395011" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395012" comment="kernel-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395013" comment="kernel-devel-matched is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395014" comment="kernel-headers is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395015" comment="kernel-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395016" comment="kernel-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395017" comment="kernel-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395018" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395019" comment="kernel-rt is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395020" comment="kernel-rt-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395021" comment="kernel-rt-debug is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395022" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395023" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395024" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395025" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395026" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395027" comment="kernel-rt-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395028" comment="kernel-rt-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395031" comment="kernel-tools is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395032" comment="kernel-tools-libs is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395033" comment="kernel-uki-virt is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395035" comment="perf is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395036" comment="python3-perf is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395037" comment="rv is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395045" comment="kernel-64k is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395046" comment="kernel-64k-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395073" comment="libperf is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202522395075" comment="kernel-doc is earlier than 0:6.12.0-124.16.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521142" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21142: python-kdcproxy security update (Important)</title>
        <reference ref_id="CVE-2025-59088" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59088"/>
        <reference ref_id="CVE-2025-59089" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59089"/>
        <reference ref_id="RHSA-2025:21142" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21142"/>
        <reference ref_id="ALSA-2025:21142" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21142.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python-kdcproxy: Unauthenticated SSRF via Realm?Controlled DNS SRV (CVE-2025-59088)
  * python-kdcproxy: Remote DoS via unbounded TCP upstream buffering (CVE-2025-59089)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-12"/>
          <updated date="2025-11-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2393955" id="2393955"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393958" id="2393958"></bugzilla>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-59088" impact="Important" cwe="CWE-918" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N">CVE-2025-59088</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-59089" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59089</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521142001" comment="python3-kdcproxy is earlier than 0:1.0.0-19.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521142002" comment="python3-kdcproxy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521281" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21281: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-13012" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13012"/>
        <reference ref_id="CVE-2025-13013" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13013"/>
        <reference ref_id="CVE-2025-13014" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13014"/>
        <reference ref_id="CVE-2025-13015" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13015"/>
        <reference ref_id="CVE-2025-13016" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13016"/>
        <reference ref_id="CVE-2025-13017" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13017"/>
        <reference ref_id="CVE-2025-13018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13018"/>
        <reference ref_id="CVE-2025-13019" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13019"/>
        <reference ref_id="CVE-2025-13020" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13020"/>
        <reference ref_id="RHSA-2025:21281" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21281"/>
        <reference ref_id="ALSA-2025:21281" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21281.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: Mitigation bypass in the DOM: Security component (CVE-2025-13018)
  * firefox: Use-after-free in the Audio/Video component (CVE-2025-13014)
  * firefox: Incorrect boundary conditions in the JavaScript: WebAssembly component (CVE-2025-13016)
  * firefox: Same-origin policy bypass in the DOM: Workers component (CVE-2025-13019)
  * firefox: Use-after-free in the WebRTC: Audio/Video component (CVE-2025-13020)
  * firefox: Race condition in the Graphics component (CVE-2025-13012)
  * firefox: Spoofing issue in Firefox (CVE-2025-13015)
  * firefox: Mitigation bypass in the DOM: Core &amp; HTML component (CVE-2025-13013)
  * firefox: Same-origin policy bypass in the DOM: Notifications component (CVE-2025-13017)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-13"/>
          <updated date="2025-11-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414079" id="2414079"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414080" id="2414080"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414083" id="2414083"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414084" id="2414084"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414085" id="2414085"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414086" id="2414086"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414090" id="2414090"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414091" id="2414091"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414092" id="2414092"></bugzilla>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13012" impact="Important" cwe="CWE-366" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-13012</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13013" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13013</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13014" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13014</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13015" impact="Low" cwe="CWE-290" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-13015</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13016" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-13016</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13017" impact="Moderate" cwe="CWE-501" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13017</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13018" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13018</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13019" impact="Moderate" cwe="CWE-346" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13019</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13020" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13020</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521281001" comment="firefox is earlier than 0:140.5.0-2.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523008" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23008: mysql8.4 security update (Moderate)</title>
        <reference ref_id="CVE-2025-53040" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53040"/>
        <reference ref_id="CVE-2025-53042" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53042"/>
        <reference ref_id="CVE-2025-53044" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53044"/>
        <reference ref_id="CVE-2025-53045" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53045"/>
        <reference ref_id="CVE-2025-53053" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53053"/>
        <reference ref_id="CVE-2025-53054" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53054"/>
        <reference ref_id="CVE-2025-53062" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53062"/>
        <reference ref_id="CVE-2025-53069" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53069"/>
        <reference ref_id="RHSA-2025:23008" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23008"/>
        <reference ref_id="ALSA-2025:23008" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23008.html"/>
        <description>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.  

Security Fix(es):  

  * mysql: DML unspecified vulnerability (CPU Oct 2025) (CVE-2025-53053)
  * mysql: InnoDB unspecified vulnerability (CPU Oct 2025) (CVE-2025-53044)
  * mysql: InnoDB unspecified vulnerability (CPU Oct 2025) (CVE-2025-53062)
  * mysql: InnoDB unspecified vulnerability (CPU Oct 2025) (CVE-2025-53054)
  * mysql: InnoDB unspecified vulnerability (CPU Oct 2025) (CVE-2025-53045)
  * mysql: Optimizer unspecified vulnerability (CPU Oct 2025) (CVE-2025-53040)
  * mysql: Components Services unspecified vulnerability (CPU Oct 2025) (CVE-2025-53069)
  * mysql: Optimizer unspecified vulnerability (CPU Oct 2025) (CVE-2025-53042)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-10"/>
          <updated date="2025-12-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2405486" id="2405486"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405491" id="2405491"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405511" id="2405511"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405514" id="2405514"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405523" id="2405523"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405534" id="2405534"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405541" id="2405541"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405544" id="2405544"></bugzilla>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53040" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-53040</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53042" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-53042</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53044" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-53044</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53045" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-53045</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53053" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H">CVE-2025-53053</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53054" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H">CVE-2025-53054</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53062" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-53062</cve>
          <cve public="20251021" href="https://access.redhat.com/security/cve/CVE-2025-53069" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-53069</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008001" comment="mysql8.4 is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699002" comment="mysql8.4 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008002" comment="mysql8.4-libs is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699004" comment="mysql8.4-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008003" comment="mysql8.4-server is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699006" comment="mysql8.4-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008004" comment="mysql8.4-test is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699010" comment="mysql8.4-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008005" comment="mysql8.4-devel is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699008" comment="mysql8.4-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008006" comment="mysql8.4-common is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699014" comment="mysql8.4-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008007" comment="mysql8.4-errmsg is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699016" comment="mysql8.4-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523008008" comment="mysql8.4-test-data is earlier than 0:8.4.7-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699018" comment="mysql8.4-test-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523139" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23139: libsoup3 security update (Moderate)</title>
        <reference ref_id="CVE-2025-12105" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-12105"/>
        <reference ref_id="RHSA-2025:23139" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23139"/>
        <reference ref_id="ALSA-2025:23139" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23139.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Heap Use-After-Free in libsoup message queue handling during HTTP/2 read completion (CVE-2025-12105)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-11"/>
          <updated date="2025-12-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2405992" id="2405992"></bugzilla>
          <cve public="20251023" href="https://access.redhat.com/security/cve/CVE-2025-12105" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-12105</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523139001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523139002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523139003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.7"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523052" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23052: tomcat9 security update (Important)</title>
        <reference ref_id="CVE-2025-31651" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-31651"/>
        <reference ref_id="CVE-2025-55752" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55752"/>
        <reference ref_id="RHSA-2025:23052" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23052"/>
        <reference ref_id="ALSA-2025:23052" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23052.html"/>
        <description>Tomcat is the servlet container that is used in the official Reference Implementation for the Java Servlet and JavaServer Pages technologies. The Java Servlet and JavaServer Pages specifications are developed by Sun under the Java Community Process. Tomcat is developed in an open and participatory environment and released under the Apache Software License version 2.0. Tomcat is intended to be a collaboration of the best-of-breed developers from around the world.  

Security Fix(es):  

  * tomcat: Apache Tomcat: Bypass of rules in Rewrite Valve (CVE-2025-31651)
  * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Directory traversal via rewrite with possible RCE (CVE-2025-55752)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-10"/>
          <updated date="2025-12-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2362782" id="2362782"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406591" id="2406591"></bugzilla>
          <cve public="20250428" href="https://access.redhat.com/security/cve/CVE-2025-31651" impact="Low" cwe="CWE-150" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2025-31651</cve>
          <cve public="20251027" href="https://access.redhat.com/security/cve/CVE-2025-55752" impact="Important" cwe="CWE-23" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-55752</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052001" comment="tomcat9 is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494002" comment="tomcat9 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052002" comment="tomcat9-admin-webapps is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494004" comment="tomcat9-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052003" comment="tomcat9-docs-webapp is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494006" comment="tomcat9-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052004" comment="tomcat9-el-3.0-api is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494008" comment="tomcat9-el-3.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052005" comment="tomcat9-jsp-2.3-api is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494010" comment="tomcat9-jsp-2.3-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052006" comment="tomcat9-lib is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494012" comment="tomcat9-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052007" comment="tomcat9-servlet-4.0-api is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494014" comment="tomcat9-servlet-4.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523052008" comment="tomcat9-webapps is earlier than 1:9.0.87-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494016" comment="tomcat9-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622145" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22145: .NET 10.0 security update (Important)</title>
        <reference ref_id="CVE-2026-42899" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42899"/>
        <reference ref_id="RHSA-2026:22145" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22145"/>
        <reference ref_id="ALSA-2026:22145" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22145.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.108 and .NET Runtime 10.0.8.Security Fix(es):  

  * dotnet: .NET: infinite loop allows an attacker to cause a denial of service (CVE-2026-42899)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-01"/>
          <updated date="2026-06-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476605" id="2476605"></bugzilla>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-42899" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42899</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145001" comment="aspnetcore-runtime-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453002" comment="aspnetcore-runtime-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145002" comment="aspnetcore-runtime-dbg-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453004" comment="aspnetcore-runtime-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145003" comment="aspnetcore-targeting-pack-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453006" comment="aspnetcore-targeting-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145004" comment="dotnet-apphost-pack-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453008" comment="dotnet-apphost-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145005" comment="dotnet-host is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601010" comment="dotnet-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145006" comment="dotnet-hostfxr-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453011" comment="dotnet-hostfxr-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145007" comment="dotnet-runtime-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453013" comment="dotnet-runtime-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145008" comment="dotnet-runtime-dbg-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453015" comment="dotnet-runtime-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145009" comment="dotnet-sdk-10.0 is earlier than 0:10.0.108-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453017" comment="dotnet-sdk-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145010" comment="dotnet-sdk-aot-10.0 is earlier than 0:10.0.108-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453019" comment="dotnet-sdk-aot-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145011" comment="dotnet-sdk-dbg-10.0 is earlier than 0:10.0.108-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453021" comment="dotnet-sdk-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145012" comment="dotnet-targeting-pack-10.0 is earlier than 0:10.0.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453023" comment="dotnet-targeting-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145013" comment="dotnet-templates-10.0 is earlier than 0:10.0.108-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453025" comment="dotnet-templates-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622145014" comment="dotnet-sdk-10.0-source-built-artifacts is earlier than 0:10.0.108-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453027" comment="dotnet-sdk-10.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521220" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21220: podman security update (Important)</title>
        <reference ref_id="CVE-2025-52881" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-52881"/>
        <reference ref_id="RHSA-2025:21220" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21220"/>
        <reference ref_id="ALSA-2025:21220" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21220.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * runc: container escape and denial of service due to arbitrary write gadgets and procfs write redirects (CVE-2025-52881)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-13"/>
          <updated date="2025-11-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2404715" id="2404715"></bugzilla>
          <cve public="20251105" href="https://access.redhat.com/security/cve/CVE-2025-52881" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H">CVE-2025-52881</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521220001" comment="podman is earlier than 7:5.6.0-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521220002" comment="podman-remote is earlier than 7:5.6.0-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521220003" comment="podman-tests is earlier than 7:5.6.0-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521220004" comment="podman-docker is earlier than 7:5.6.0-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523035" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23035: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-14321" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14321"/>
        <reference ref_id="CVE-2025-14322" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14322"/>
        <reference ref_id="CVE-2025-14323" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14323"/>
        <reference ref_id="CVE-2025-14324" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14324"/>
        <reference ref_id="CVE-2025-14325" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14325"/>
        <reference ref_id="CVE-2025-14328" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14328"/>
        <reference ref_id="CVE-2025-14329" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14329"/>
        <reference ref_id="CVE-2025-14330" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14330"/>
        <reference ref_id="CVE-2025-14331" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14331"/>
        <reference ref_id="CVE-2025-14333" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14333"/>
        <reference ref_id="RHSA-2025:23035" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23035"/>
        <reference ref_id="ALSA-2025:23035" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23035.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: Memory safety bugs fixed in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146 (CVE-2025-14333)
  * firefox: Use-after-free in the WebRTC: Signaling component (CVE-2025-14321)
  * firefox: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2025-14325)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component (CVE-2025-14322)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2025-14328)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2025-14329)
  * firefox: Same-origin policy bypass in the Request Handling component (CVE-2025-14331)
  * firefox: Privilege escalation in the DOM: Notifications component (CVE-2025-14323)
  * firefox: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2025-14330)
  * firefox: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2025-14324)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-10"/>
          <updated date="2025-12-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2420502" id="2420502"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420503" id="2420503"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420504" id="2420504"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420506" id="2420506"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420508" id="2420508"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420509" id="2420509"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420512" id="2420512"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420513" id="2420513"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420516" id="2420516"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420517" id="2420517"></bugzilla>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14321" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14321</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14322" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14322</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14323" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14323</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14324" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14324</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14325" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14325</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14328" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14328</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14329" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14329</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14330" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14330</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14331" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14331</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14333" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14333</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202523035001" comment="firefox is earlier than 0:140.6.0-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523050" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23050: tomcat security update (Important)</title>
        <reference ref_id="CVE-2025-31651" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-31651"/>
        <reference ref_id="CVE-2025-55752" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55752"/>
        <reference ref_id="CVE-2025-61795" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61795"/>
        <reference ref_id="RHSA-2025:23050" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23050"/>
        <reference ref_id="ALSA-2025:23050" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23050.html"/>
        <description>Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies.  

Security Fix(es):  

  * tomcat: Apache Tomcat: Bypass of rules in Rewrite Valve (CVE-2025-31651)
  * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Denial of service (CVE-2025-61795)
  * tomcat: org.apache.tomcat/tomcat-catalina: Apache Tomcat: Directory traversal via rewrite with possible RCE (CVE-2025-55752)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-10"/>
          <updated date="2025-12-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2362782" id="2362782"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406588" id="2406588"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406591" id="2406591"></bugzilla>
          <cve public="20250428" href="https://access.redhat.com/security/cve/CVE-2025-31651" impact="Low" cwe="CWE-150" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2025-31651</cve>
          <cve public="20251027" href="https://access.redhat.com/security/cve/CVE-2025-55752" impact="Important" cwe="CWE-23" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-55752</cve>
          <cve public="20251027" href="https://access.redhat.com/security/cve/CVE-2025-61795" impact="Moderate" cwe="CWE-404" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61795</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050001" comment="tomcat is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497004" comment="tomcat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050002" comment="tomcat-admin-webapps is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497006" comment="tomcat-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050003" comment="tomcat-docs-webapp is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497008" comment="tomcat-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050004" comment="tomcat-el-5.0-api is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497010" comment="tomcat-el-5.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050005" comment="tomcat-jsp-3.1-api is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497012" comment="tomcat-jsp-3.1-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050006" comment="tomcat-lib is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497002" comment="tomcat-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050007" comment="tomcat-servlet-6.0-api is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497014" comment="tomcat-servlet-6.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523050008" comment="tomcat-webapps is earlier than 1:10.1.36-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497016" comment="tomcat-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523083" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23083: wireshark security update (Important)</title>
        <reference ref_id="CVE-2025-13499" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13499"/>
        <reference ref_id="RHSA-2025:23083" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23083"/>
        <reference ref_id="ALSA-2025:23083" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23083.html"/>
        <description>The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.  

Security Fix(es):  

  * wireshark: Access of Uninitialized Pointer in Wireshark (CVE-2025-13499)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-10"/>
          <updated date="2025-12-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2416293" id="2416293"></bugzilla>
          <cve public="20251121" href="https://access.redhat.com/security/cve/CVE-2025-13499" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2025-13499</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523083001" comment="wireshark is earlier than 1:4.4.2-4.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121002" comment="wireshark is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523083002" comment="wireshark-cli is earlier than 1:4.4.2-4.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121004" comment="wireshark-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523083003" comment="wireshark-devel is earlier than 1:4.4.2-4.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121006" comment="wireshark-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523088" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23088: grafana security update (Moderate)</title>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2025:23088" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23088"/>
        <reference ref_id="ALSA-2025:23088" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23088.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-11"/>
          <updated date="2025-12-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523088001" comment="grafana is earlier than 0:10.2.6-21.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523088002" comment="grafana-selinux is earlier than 0:10.2.6-21.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202520983" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:20983: podman security update (Important)</title>
        <reference ref_id="CVE-2025-9566" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9566"/>
        <reference ref_id="CVE-2025-47907" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47907"/>
        <reference ref_id="RHSA-2025:20983" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:20983"/>
        <reference ref_id="ALSA-2025:20983" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-20983.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * database/sql: Postgres Scan Race Condition (CVE-2025-47907)
  * podman: Podman kube play command may overwrite host files (CVE-2025-9566)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2387083" id="2387083"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393152" id="2393152"></bugzilla>
          <cve public="20250904" href="https://access.redhat.com/security/cve/CVE-2025-9566" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H">CVE-2025-9566</cve>
          <cve public="20250807" href="https://access.redhat.com/security/cve/CVE-2025-47907" impact="Moderate" cwe="CWE-362" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L">CVE-2025-47907</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520983001" comment="podman is earlier than 7:5.6.0-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520983002" comment="podman-remote is earlier than 7:5.6.0-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520983003" comment="podman-tests is earlier than 7:5.6.0-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520983004" comment="podman-docker is earlier than 7:5.6.0-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263864" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3864: delve security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3864" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3864"/>
        <reference ref_id="ALSA-2026:3864" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3864.html"/>
        <description>Delve is a debugger for the Go programming language. The goal of the project is to provide a simple, full featured debugging tool for Go. Delve should be easy to invoke and easy to use. Chances are if you're using a debugger, things aren't going your way. With that in mind, Delve should stay out of your way as much as possible.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-05"/>
          <updated date="2026-03-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263864001" comment="delve is earlier than 0:1.25.2-2.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259317002" comment="delve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519469" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19469: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-39702" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39702"/>
        <reference ref_id="CVE-2025-39881" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39881"/>
        <reference ref_id="RHSA-2025:19469" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19469"/>
        <reference ref_id="ALSA-2025:19469" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19469.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ipv6: sr: Fix MAC comparison to be constant-time (CVE-2025-39702)
  * kernel: kernfs: Fix UAF in polling when open file is released (CVE-2025-39881)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-03"/>
          <updated date="2025-11-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2393533" id="2393533"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2397558" id="2397558"></bugzilla>
          <cve public="20250905" href="https://access.redhat.com/security/cve/CVE-2025-39702" impact="Moderate" cwe="CWE-208" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-39702</cve>
          <cve public="20250923" href="https://access.redhat.com/security/cve/CVE-2025-39881" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-39881</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469001" comment="rtla is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469002" comment="rv is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469003" comment="kernel-cross-headers is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469004" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469005" comment="libperf is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469006" comment="kernel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469007" comment="kernel-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469008" comment="kernel-debug is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469009" comment="kernel-debug-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469010" comment="kernel-debug-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469011" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469012" comment="kernel-debug-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469013" comment="kernel-debug-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469014" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469015" comment="kernel-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469016" comment="kernel-devel-matched is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469017" comment="kernel-headers is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469018" comment="kernel-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469019" comment="kernel-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469020" comment="kernel-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469021" comment="kernel-tools is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469022" comment="kernel-tools-libs is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469023" comment="perf is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469024" comment="python3-perf is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469025" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469026" comment="kernel-rt is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469027" comment="kernel-rt-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469028" comment="kernel-rt-debug is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469029" comment="kernel-rt-debug-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469030" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469031" comment="kernel-rt-debug-kvm is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896076" comment="kernel-rt-debug-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469032" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469033" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469034" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469035" comment="kernel-rt-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469036" comment="kernel-rt-kvm is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896086" comment="kernel-rt-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469037" comment="kernel-rt-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469038" comment="kernel-rt-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469039" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469040" comment="kernel-uki-virt is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469041" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469042" comment="kernel-zfcpdump is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469043" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469044" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469045" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469046" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469047" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469048" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469049" comment="kernel-64k is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469050" comment="kernel-64k-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469051" comment="kernel-64k-debug is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469052" comment="kernel-64k-debug-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469053" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469054" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469055" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469056" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469057" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469058" comment="kernel-64k-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469059" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469060" comment="kernel-64k-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469061" comment="kernel-64k-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469062" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469063" comment="kernel-rt-64k is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469064" comment="kernel-rt-64k-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469065" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469066" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469067" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469068" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469069" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469070" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469071" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469072" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469073" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469074" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469075" comment="kernel-abi-stablelists is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519469076" comment="kernel-doc is earlier than 0:6.12.0-55.42.1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519566" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19566: osbuild-composer security update (Moderate)</title>
        <reference ref_id="CVE-2025-27144" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-27144"/>
        <reference ref_id="RHSA-2025:19566" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19566"/>
        <reference ref_id="ALSA-2025:19566" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19566.html"/>
        <description>A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients.  

Security Fix(es):  

  * go-jose: Go JOSE's Parsing Vulnerable to Denial of Service (CVE-2025-27144)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-04"/>
          <updated date="2025-11-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2347423" id="2347423"></bugzilla>
          <cve public="20250224" href="https://access.redhat.com/security/cve/CVE-2025-27144" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-27144</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519566001" comment="osbuild-composer is earlier than 0:134.1-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623002" comment="osbuild-composer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519566002" comment="osbuild-composer-core is earlier than 0:134.1-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623004" comment="osbuild-composer-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519566003" comment="osbuild-composer-worker is earlier than 0:134.1-3.el10_0.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623006" comment="osbuild-composer-worker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260928" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0928: java-21-openjdk security update (Important)</title>
        <reference ref_id="CVE-2025-64720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-64720"/>
        <reference ref_id="CVE-2025-65018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-65018"/>
        <reference ref_id="CVE-2026-21925" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21925"/>
        <reference ref_id="CVE-2026-21933" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21933"/>
        <reference ref_id="CVE-2026-21945" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21945"/>
        <reference ref_id="RHSA-2026:0928" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0928"/>
        <reference ref_id="ALSA-2026:0928" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0928.html"/>
        <description>The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Improve JMX connections (CVE-2026-21925)
  * JDK: Improve HttpServer Request handling (CVE-2026-21933)
  * JDK: Enhance Certificate Checking (CVE-2026-21945)
  * libpng: LIBPNG buffer overflow (CVE-2025-64720)
  * libpng: LIBPNG heap buffer overflow (CVE-2025-65018)


Bug Fix(es):  

  * When using a P11SecretKey for both signing and encryption in FIPS mode, the FIPS PKCS11 provider would fail with a CKR_ATTRIBUTE_VALUE_INVALID error. This was due to the default configuration not applying the CKA_ENCRYPT=true attribute to the key. The configuration in this release is updated to include this attribute. (AlmaLinux-142860, AlmaLinux-142876, AlmaLinux-142877, AlmaLinux-142878, AlmaLinux-142879, AlmaLinux-142880)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-22"/>
          <updated date="2026-01-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-64720" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2025-64720</cve>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-65018" impact="Important" cwe="(CWE-122|CWE-787)" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H">CVE-2025-65018</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21925" impact="Moderate" cwe="CWE-322" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-21925</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21933" impact="Moderate" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-21933</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21945" impact="Important" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21945</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928001" comment="java-21-openjdk is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508002" comment="java-21-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928002" comment="java-21-openjdk-demo is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508004" comment="java-21-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928003" comment="java-21-openjdk-devel is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508006" comment="java-21-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928004" comment="java-21-openjdk-headless is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508008" comment="java-21-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928005" comment="java-21-openjdk-javadoc is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508010" comment="java-21-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928006" comment="java-21-openjdk-javadoc-zip is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508012" comment="java-21-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928007" comment="java-21-openjdk-jmods is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508014" comment="java-21-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928008" comment="java-21-openjdk-src is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508016" comment="java-21-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928009" comment="java-21-openjdk-static-libs is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508018" comment="java-21-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928010" comment="java-21-openjdk-demo-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508020" comment="java-21-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928011" comment="java-21-openjdk-demo-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508022" comment="java-21-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928012" comment="java-21-openjdk-devel-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508024" comment="java-21-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928013" comment="java-21-openjdk-devel-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508026" comment="java-21-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928014" comment="java-21-openjdk-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508028" comment="java-21-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928015" comment="java-21-openjdk-headless-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508030" comment="java-21-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928016" comment="java-21-openjdk-headless-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508032" comment="java-21-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928017" comment="java-21-openjdk-jmods-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508034" comment="java-21-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928018" comment="java-21-openjdk-jmods-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508036" comment="java-21-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928019" comment="java-21-openjdk-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508038" comment="java-21-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928020" comment="java-21-openjdk-src-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508040" comment="java-21-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928021" comment="java-21-openjdk-src-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508042" comment="java-21-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928022" comment="java-21-openjdk-static-libs-fastdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508044" comment="java-21-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260928023" comment="java-21-openjdk-static-libs-slowdebug is earlier than 1:21.0.10.0.7-1.el10.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508046" comment="java-21-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519772" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19772: qt6-qtsvg security update (Important)</title>
        <reference ref_id="CVE-2025-10729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10729"/>
        <reference ref_id="RHSA-2025:19772" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19772"/>
        <reference ref_id="ALSA-2025:19772" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19772.html"/>
        <description>Scalable Vector Graphics (SVG) is an XML-based language for describing two-dimensional vector graphics. Qt provides classes for rendering and displaying SVG drawings in widgets and on other paint devices.  

Security Fix(es):  

  * qtsvg: Use-after-free vulnerability in Qt SVG (CVE-2025-10729)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-05"/>
          <updated date="2025-11-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401241" id="2401241"></bugzilla>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-10729" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H">CVE-2025-10729</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772001" comment="qt6-qtsvg is earlier than 0:6.8.1-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772002" comment="qt6-qtsvg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772003" comment="qt6-qtsvg-devel is earlier than 0:6.8.1-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772004" comment="qt6-qtsvg-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772005" comment="qt6-qtsvg-examples is earlier than 0:6.8.1-1.el10_0.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519772006" comment="qt6-qtsvg-examples is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519675" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19675: valkey security update (Important)</title>
        <reference ref_id="CVE-2025-46817" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46817"/>
        <reference ref_id="CVE-2025-46818" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46818"/>
        <reference ref_id="CVE-2025-46819" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-46819"/>
        <reference ref_id="CVE-2025-49844" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-49844"/>
        <reference ref_id="RHSA-2025:19675" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19675"/>
        <reference ref_id="ALSA-2025:19675" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19675.html"/>
        <description>Valkey is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Valkey works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Valkey also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Valkey behave like a cache. You can use Valkey from most programming languages also.  

Security Fix(es):  

  * redis: Lua library commands may lead to integer overflow and potential RCE (CVE-2025-46817)
  * Redis: Redis: Authenticated users can execute LUA scripts as a different user (CVE-2025-46818)
  * Redis: Redis is vulnerable to DoS via specially crafted LUA scripts (CVE-2025-46819)
  * Redis: Redis Lua Use-After-Free may lead to remote code execution (CVE-2025-49844)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-04"/>
          <updated date="2025-11-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401258" id="2401258"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401292" id="2401292"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401322" id="2401322"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401324" id="2401324"></bugzilla>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-46817" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-46817</cve>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-46818" impact="Moderate" cwe="CWE-94" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N">CVE-2025-46818</cve>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-46819" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-46819</cve>
          <cve public="20251003" href="https://access.redhat.com/security/cve/CVE-2025-49844" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-49844</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519675001" comment="valkey is earlier than 0:8.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521936001" comment="valkey is earlier than 0:8.0.6-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509002" comment="valkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519675002" comment="valkey-devel is earlier than 0:8.0.6-1.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521936002" comment="valkey-devel is earlier than 0:8.0.6-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257509004" comment="valkey-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523484" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23484: libssh security update (Moderate)</title>
        <reference ref_id="CVE-2025-5987" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5987"/>
        <reference ref_id="RHSA-2025:23484" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23484"/>
        <reference ref_id="ALSA-2025:23484" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23484.html"/>
        <description>libssh is a library which implements the SSH protocol. It can be used to implement client and server applications.  

Security Fix(es):  

  * libssh: Invalid return code for chacha20 poly1305 with OpenSSL backend (CVE-2025-5987)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-17"/>
          <updated date="2025-12-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2376219" id="2376219"></bugzilla>
          <cve public="20250426" href="https://access.redhat.com/security/cve/CVE-2025-5987" impact="Moderate" cwe="CWE-393" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L">CVE-2025-5987</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523484001" comment="libssh is earlier than 0:0.11.1-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231002" comment="libssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523484002" comment="libssh-devel is earlier than 0:0.11.1-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231004" comment="libssh-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523484003" comment="libssh-config is earlier than 0:0.11.1-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202518231006" comment="libssh-config is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523479" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23479: openssh security update (Moderate)</title>
        <reference ref_id="CVE-2025-61984" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61984"/>
        <reference ref_id="CVE-2025-61985" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61985"/>
        <reference ref_id="RHSA-2025:23479" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23479"/>
        <reference ref_id="ALSA-2025:23479" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23479.html"/>
        <description>OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.  

Security Fix(es):  

  * openssh: OpenSSH: Control characters in usernames can lead to code execution via ProxyCommand (CVE-2025-61984)
  * openssh: OpenSSH: Null character in ssh:// URI can lead to code execution via ProxyCommand (CVE-2025-61985)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-17"/>
          <updated date="2025-12-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401960" id="2401960"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401962" id="2401962"></bugzilla>
          <cve public="20251006" href="https://access.redhat.com/security/cve/CVE-2025-61984" impact="Moderate" cwe="CWE-159" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L">CVE-2025-61984</cve>
          <cve public="20251006" href="https://access.redhat.com/security/cve/CVE-2025-61985" impact="Moderate" cwe="CWE-158" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L">CVE-2025-61985</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523479001" comment="openssh is earlier than 0:9.9p1-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126002" comment="openssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523479002" comment="openssh-askpass is earlier than 0:9.9p1-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126004" comment="openssh-askpass is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523479003" comment="openssh-clients is earlier than 0:9.9p1-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126006" comment="openssh-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523479004" comment="openssh-keycat is earlier than 0:9.9p1-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126008" comment="openssh-keycat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523479005" comment="openssh-keysign is earlier than 0:9.9p1-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126010" comment="openssh-keysign is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523479006" comment="openssh-server is earlier than 0:9.9p1-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126012" comment="openssh-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521816" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21816: delve and golang security update (Moderate)</title>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2025:21816" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21816"/>
        <reference ref_id="ALSA-2025:21816" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21816.html"/>
        <description>The Go Programming Language.  

Security Fix(es):  

  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-20"/>
          <updated date="2025-11-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816001" comment="delve is earlier than 0:1.25.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259317002" comment="delve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816002" comment="go-toolset is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816003" comment="golang is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816004" comment="golang-bin is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816005" comment="golang-race is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816006" comment="golang-docs is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816007" comment="golang-misc is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816008" comment="golang-src is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521816009" comment="golang-tests is earlier than 0:1.25.3-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519435" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19435: xorg-x11-server-Xwayland security update (Moderate)</title>
        <reference ref_id="CVE-2025-62229" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62229"/>
        <reference ref_id="CVE-2025-62230" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62230"/>
        <reference ref_id="CVE-2025-62231" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-62231"/>
        <reference ref_id="RHSA-2025:19435" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19435"/>
        <reference ref_id="ALSA-2025:19435" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19435.html"/>
        <description>Xwayland is an X server for running X clients under Wayland.  

Security Fix(es):  

  * xorg: xmayland: Use-after-free in XPresentNotify structure creation (CVE-2025-62229)
  * xorg: xwayland: Use-after-free in Xkb client resource removal (CVE-2025-62230)
  * xorg: xmayland: Value overflow in XkbSetCompatMap() (CVE-2025-62231)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-03"/>
          <updated date="2025-11-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2402649" id="2402649"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402653" id="2402653"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2402660" id="2402660"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-62229" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-62229</cve>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-62230" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-62230</cve>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-62231" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-62231</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519435001" comment="xorg-x11-server-Xwayland is earlier than 0:24.1.5-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521035001" comment="xorg-x11-server-Xwayland is earlier than 0:24.1.5-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304002" comment="xorg-x11-server-Xwayland is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519435002" comment="xorg-x11-server-Xwayland-devel is earlier than 0:24.1.5-5.el10_0"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521035002" comment="xorg-x11-server-Xwayland-devel is earlier than 0:24.1.5-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304004" comment="xorg-x11-server-Xwayland-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260922" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0922: golang security update (Important)</title>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="RHSA-2026:0922" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0922"/>
        <reference ref_id="ALSA-2026:0922" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0922.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-21"/>
          <updated date="2026-01-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922001" comment="go-toolset is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922002" comment="golang is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922003" comment="golang-bin is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922004" comment="golang-race is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922005" comment="golang-docs is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922006" comment="golang-misc is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922007" comment="golang-src is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260922008" comment="golang-tests is earlier than 0:1.25.5-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263887" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3887: postgresql16 security update (Important)</title>
        <reference ref_id="CVE-2026-2004" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2004"/>
        <reference ref_id="CVE-2026-2005" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2005"/>
        <reference ref_id="CVE-2026-2006" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2006"/>
        <reference ref_id="RHSA-2026:3887" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3887"/>
        <reference ref_id="ALSA-2026:3887" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3887.html"/>
        <description>PostgreSQL is an advanced Object-Relational database management system (DBMS). The base postgresql package contains the client programs that you'll need to access a PostgreSQL DBMS server, as well as HTML documentation for the whole system. These client programs can be located on the same machine as the PostgreSQL server, or on a remote machine that accesses a PostgreSQL server over a network connection. The PostgreSQL server can be found in the postgresql-server sub-package.  

Security Fix(es):  

  * postgresql: PostgreSQL missing validation of multibyte character length executes arbitrary code (CVE-2026-2006)
  * postgresql: PostgreSQL intarray missing validation of type of input to selectivity estimator executes arbitrary code (CVE-2026-2004)
  * postgresql: PostgreSQL pgcrypto heap buffer overflow executes arbitrary code (CVE-2026-2005)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-05"/>
          <updated date="2026-03-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2439324" id="2439324"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439325" id="2439325"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439326" id="2439326"></bugzilla>
          <cve public="20260212" href="https://access.redhat.com/security/cve/CVE-2026-2004" impact="Important" cwe="CWE-1287" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-2004</cve>
          <cve public="20260212" href="https://access.redhat.com/security/cve/CVE-2026-2005" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-2005</cve>
          <cve public="20260212" href="https://access.redhat.com/security/cve/CVE-2026-2006" impact="Important" cwe="CWE-1285" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-2006</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887001" comment="postgresql is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826002" comment="postgresql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887002" comment="postgresql-contrib is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826004" comment="postgresql-contrib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887003" comment="postgresql-docs is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826006" comment="postgresql-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887004" comment="postgresql-plperl is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826008" comment="postgresql-plperl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887005" comment="postgresql-plpython3 is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826010" comment="postgresql-plpython3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887006" comment="postgresql-pltcl is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826012" comment="postgresql-pltcl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887007" comment="postgresql-private-devel is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826014" comment="postgresql-private-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887008" comment="postgresql-private-libs is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826016" comment="postgresql-private-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887009" comment="postgresql-server is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826018" comment="postgresql-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887010" comment="postgresql-server-devel is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826020" comment="postgresql-server-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887011" comment="postgresql-static is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826022" comment="postgresql-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887012" comment="postgresql-test is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826024" comment="postgresql-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887013" comment="postgresql-upgrade is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826026" comment="postgresql-upgrade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887014" comment="postgresql-upgrade-devel is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826028" comment="postgresql-upgrade-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263887015" comment="postgresql-test-rpm-macros is earlier than 0:16.13-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826030" comment="postgresql-test-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519403" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19403: expat security update (Important)</title>
        <reference ref_id="CVE-2025-59375" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59375"/>
        <reference ref_id="RHSA-2025:19403" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19403"/>
        <reference ref_id="ALSA-2025:19403" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19403.html"/>
        <description>Expat is a C library for parsing XML documents.  

Security Fix(es):  

  * expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing (CVE-2025-59375)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-03"/>
          <updated date="2025-11-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2395108" id="2395108"></bugzilla>
          <cve public="20250915" href="https://access.redhat.com/security/cve/CVE-2025-59375" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-59375</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519403001" comment="expat is earlier than 0:2.7.1-1.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521030001" comment="expat is earlier than 0:2.7.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512002" comment="expat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519403002" comment="expat-devel is earlier than 0:2.7.1-1.el10_0.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521030002" comment="expat-devel is earlier than 0:2.7.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512004" comment="expat-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202519912" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:19912: bind security update (Important)</title>
        <reference ref_id="CVE-2025-8677" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8677"/>
        <reference ref_id="CVE-2025-40778" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40778"/>
        <reference ref_id="CVE-2025-40780" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40780"/>
        <reference ref_id="RHSA-2025:19912" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:19912"/>
        <reference ref_id="ALSA-2025:19912" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-19912.html"/>
        <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.  

Security Fix(es):  

  * bind: Cache poisoning attacks with unsolicited RRs (CVE-2025-40778)
  * bind: Cache poisoning due to weak PRNG (CVE-2025-40780)
  * bind: Resource exhaustion via malformed DNSKEY handling (CVE-2025-8677)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-06"/>
          <updated date="2025-11-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2405827" id="2405827"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405829" id="2405829"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2405830" id="2405830"></bugzilla>
          <cve public="20251022" href="https://access.redhat.com/security/cve/CVE-2025-8677" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-8677</cve>
          <cve public="20251022" href="https://access.redhat.com/security/cve/CVE-2025-40778" impact="Important" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N">CVE-2025-40778</cve>
          <cve public="20251022" href="https://access.redhat.com/security/cve/CVE-2025-40780" impact="Important" cwe="CWE-338" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N">CVE-2025-40780</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912001" comment="bind is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034001" comment="bind is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912002" comment="bind is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912003" comment="bind-chroot is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034002" comment="bind-chroot is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912004" comment="bind-chroot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912005" comment="bind-dnssec-utils is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034003" comment="bind-dnssec-utils is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912006" comment="bind-dnssec-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912007" comment="bind-libs is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034004" comment="bind-libs is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912008" comment="bind-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912009" comment="bind-utils is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034005" comment="bind-utils is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912010" comment="bind-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912011" comment="bind-devel is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034006" comment="bind-devel is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912012" comment="bind-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912013" comment="bind-license is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034007" comment="bind-license is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912014" comment="bind-license is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912015" comment="bind-doc is earlier than 32:9.18.33-4.el10_0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521034008" comment="bind-doc is earlier than 32:9.18.33-10.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912016" comment="bind-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625930" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25930: postfix security update (Important)</title>
        <reference ref_id="CVE-2026-43964" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43964"/>
        <reference ref_id="RHSA-2026:25930" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25930"/>
        <reference ref_id="ALSA-2026:25930" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25930.html"/>
        <description>The postfix packages provide a Mail Transport Agent (MTA), which supports protocols like LDAP, SMTP AUTH (SASL), and TLS.  

Security Fix(es):  

  * postfix: buffer over-read via malformed enhanced status code (CVE-2026-43964)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-15"/>
          <updated date="2026-06-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2466488" id="2466488"></bugzilla>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-43964" impact="Important" cwe="CWE-193" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-43964</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930001" comment="postfix-mysql is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930002" comment="postfix-mysql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930003" comment="postfix-pcre is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930004" comment="postfix-pcre is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930005" comment="postfix-perl-scripts is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930006" comment="postfix-perl-scripts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930007" comment="postfix-pgsql is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930008" comment="postfix-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930009" comment="postfix-sqlite is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930010" comment="postfix-sqlite is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930011" comment="postfix is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930012" comment="postfix is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930013" comment="postfix-cdb is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930014" comment="postfix-cdb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930015" comment="postfix-ldap is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930016" comment="postfix-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930017" comment="postfix-lmdb is earlier than 2:3.8.5-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625930018" comment="postfix-lmdb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521843" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21843: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-13012" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13012"/>
        <reference ref_id="CVE-2025-13013" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13013"/>
        <reference ref_id="CVE-2025-13014" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13014"/>
        <reference ref_id="CVE-2025-13015" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13015"/>
        <reference ref_id="CVE-2025-13016" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13016"/>
        <reference ref_id="CVE-2025-13017" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13017"/>
        <reference ref_id="CVE-2025-13018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13018"/>
        <reference ref_id="CVE-2025-13019" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13019"/>
        <reference ref_id="CVE-2025-13020" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13020"/>
        <reference ref_id="RHSA-2025:21843" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21843"/>
        <reference ref_id="ALSA-2025:21843" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21843.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: Mitigation bypass in the DOM: Security component (CVE-2025-13018)
  * firefox: Use-after-free in the Audio/Video component (CVE-2025-13014)
  * firefox: Incorrect boundary conditions in the JavaScript: WebAssembly component (CVE-2025-13016)
  * firefox: Same-origin policy bypass in the DOM: Workers component (CVE-2025-13019)
  * firefox: Use-after-free in the WebRTC: Audio/Video component (CVE-2025-13020)
  * firefox: Race condition in the Graphics component (CVE-2025-13012)
  * firefox: Spoofing issue in Firefox (CVE-2025-13015)
  * firefox: Mitigation bypass in the DOM: Core &amp; HTML component (CVE-2025-13013)
  * firefox: Same-origin policy bypass in the DOM: Notifications component (CVE-2025-13017)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-20"/>
          <updated date="2025-11-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414079" id="2414079"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414080" id="2414080"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414083" id="2414083"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414084" id="2414084"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414085" id="2414085"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414086" id="2414086"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414090" id="2414090"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414091" id="2414091"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414092" id="2414092"></bugzilla>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13012" impact="Important" cwe="CWE-366" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-13012</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13013" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13013</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13014" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13014</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13015" impact="Low" cwe="CWE-290" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2025-13015</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13016" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-13016</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13017" impact="Moderate" cwe="CWE-501" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13017</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13018" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13018</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13019" impact="Moderate" cwe="CWE-346" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13019</cve>
          <cve public="20251111" href="https://access.redhat.com/security/cve/CVE-2025-13020" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-13020</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521843001" comment="thunderbird is earlier than 0:140.5.0-2.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523294" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23294: skopeo security update (Moderate)</title>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2025:23294" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23294"/>
        <reference ref_id="ALSA-2025:23294" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23294.html"/>
        <description>The skopeo command lets you inspect images from container image registries, get images and image layers, and use signatures to create and verify files.   

Security Fix(es):  

  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-16"/>
          <updated date="2025-12-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523294001" comment="skopeo is earlier than 2:1.20.0-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149002" comment="skopeo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523294002" comment="skopeo-tests is earlier than 2:1.20.0-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149004" comment="skopeo-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523201" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23201: keylime security update (Important)</title>
        <reference ref_id="CVE-2025-13609" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13609"/>
        <reference ref_id="RHSA-2025:23201" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23201"/>
        <reference ref_id="ALSA-2025:23201" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23201.html"/>
        <description>Keylime is a TPM based highly scalable remote boot attestation and runtime integrity measurement solution.  

Security Fix(es):  

  * keylime: Keylime: Registrar allows identity takeover via duplicate UUID registration (CVE-2025-13609)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-15"/>
          <updated date="2025-12-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2416761" id="2416761"></bugzilla>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-13609" impact="Important" cwe="CWE-694" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:L">CVE-2025-13609</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201001" comment="keylime is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201002" comment="keylime is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201003" comment="keylime-base is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201004" comment="keylime-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201005" comment="keylime-registrar is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201006" comment="keylime-registrar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201007" comment="keylime-tenant is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201008" comment="keylime-tenant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201009" comment="keylime-tools is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201010" comment="keylime-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201011" comment="keylime-verifier is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201012" comment="keylime-verifier is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201013" comment="python3-keylime is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201014" comment="python3-keylime is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201015" comment="keylime-selinux is earlier than 0:7.12.1-11.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201016" comment="keylime-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523738" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23738: mod_md security update (Important)</title>
        <reference ref_id="CVE-2025-55753" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55753"/>
        <reference ref_id="RHSA-2025:23738" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23738"/>
        <reference ref_id="ALSA-2025:23738" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23738.html"/>
        <description>This module manages common properties of domains for one or more virtual hosts. Specifically it can use the ACME protocol to automate certificate provisioning. Certificates will be configured for managed domains and their virtual hosts automatically, including at renewal.  

Security Fix(es):  

  * mod_md: Apache HTTP Server: mod_md (ACME), unintended retry intervals (CVE-2025-55753)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-22"/>
          <updated date="2025-12-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2419140" id="2419140"></bugzilla>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-55753" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2025-55753</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202523738001" comment="mod_md is earlier than 1:2.4.26-4.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202523738002" comment="mod_md is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260237" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0237: libpng security update (Important)</title>
        <reference ref_id="CVE-2025-64720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-64720"/>
        <reference ref_id="CVE-2025-65018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-65018"/>
        <reference ref_id="CVE-2025-66293" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-66293"/>
        <reference ref_id="RHSA-2026:0237" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0237"/>
        <reference ref_id="ALSA-2026:0237" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0237.html"/>
        <description>The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files.  

Security Fix(es):  

  * libpng: LIBPNG buffer overflow (CVE-2025-64720)
  * libpng: LIBPNG heap buffer overflow (CVE-2025-65018)
  * libpng: LIBPNG out-of-bounds read in png_image_read_composite (CVE-2025-66293)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-07"/>
          <updated date="2026-01-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2416904" id="2416904"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2416907" id="2416907"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418711" id="2418711"></bugzilla>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-64720" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2025-64720</cve>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-65018" impact="Important" cwe="(CWE-122|CWE-787)" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H">CVE-2025-65018</cve>
          <cve public="20251203" href="https://access.redhat.com/security/cve/CVE-2025-66293" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2025-66293</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237001" comment="libpng is earlier than 2:1.6.40-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237002" comment="libpng is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237003" comment="libpng-devel is earlier than 2:1.6.40-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237004" comment="libpng-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265063" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5063: libarchive security update (Important)</title>
        <reference ref_id="CVE-2026-4111" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4111"/>
        <reference ref_id="RHSA-2026:5063" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5063"/>
        <reference ref_id="ALSA-2026:5063" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5063.html"/>
        <description>The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers.  

Security Fix(es):  

  * libarchive: Infinite Loop Denial of Service in RAR5 Decompression via archive_read_data() in libarchive (CVE-2026-4111)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-19"/>
          <updated date="2026-03-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2446453" id="2446453"></bugzilla>
          <cve public="20260311" href="https://access.redhat.com/security/cve/CVE-2026-4111" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4111</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265063001" comment="bsdtar is earlier than 0:3.7.7-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420002" comment="bsdtar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265063002" comment="libarchive is earlier than 0:3.7.7-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420004" comment="libarchive is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265063003" comment="libarchive-devel is earlier than 0:3.7.7-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420006" comment="libarchive-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523667" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23667: git-lfs security update (Important)</title>
        <reference ref_id="CVE-2025-26625" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-26625"/>
        <reference ref_id="RHSA-2025:23667" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23667"/>
        <reference ref_id="ALSA-2025:23667" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23667.html"/>
        <description>Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server.  

Security Fix(es):  

  * git-lfs: Git LFS may write to arbitrary files via crafted symlinks (CVE-2025-26625)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-18"/>
          <updated date="2025-12-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2404720" id="2404720"></bugzilla>
          <cve public="20251017" href="https://access.redhat.com/security/cve/CVE-2025-26625" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2025-26625</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202523667001" comment="git-lfs is earlier than 0:3.6.1-4.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063002" comment="git-lfs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260002" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0002: tar security update (Moderate)</title>
        <reference ref_id="CVE-2025-45582" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-45582"/>
        <reference ref_id="RHSA-2026:0002" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0002"/>
        <reference ref_id="ALSA-2026:0002" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0002.html"/>
        <description>The GNU tar program can save multiple files in an archive and restore files from an archive.  

Security Fix(es):  

  * tar: Tar path traversal (CVE-2025-45582)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-05"/>
          <updated date="2026-01-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2379592" id="2379592"></bugzilla>
          <cve public="20250711" href="https://access.redhat.com/security/cve/CVE-2025-45582" impact="Moderate" cwe="CWE-24" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-45582</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20260002001" comment="tar is earlier than 2:1.35-9.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20260002002" comment="tar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202521020" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:21020: sssd security update (Important)</title>
        <reference ref_id="CVE-2025-11561" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11561"/>
        <reference ref_id="RHSA-2025:21020" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:21020"/>
        <reference ref_id="ALSA-2025:21020" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-21020.html"/>
        <description>The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources.  

Security Fix(es):  

  * sssd: SSSD default Kerberos configuration allows privilege escalation on AD-joined Linux systems (CVE-2025-11561)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-11-11"/>
          <updated date="2025-11-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2402727" id="2402727"></bugzilla>
          <cve public="20251009" href="https://access.redhat.com/security/cve/CVE-2025-11561" impact="Important" cwe="CWE-269" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-11561</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020001" comment="sssd-ipa is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020002" comment="sssd-ipa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020003" comment="sssd-kcm is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020004" comment="sssd-kcm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020005" comment="sssd-krb5 is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020006" comment="sssd-krb5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020007" comment="sssd-krb5-common is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020008" comment="sssd-krb5-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020009" comment="sssd-ldap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020010" comment="sssd-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020011" comment="sssd-nfs-idmap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020012" comment="sssd-nfs-idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020013" comment="sssd-passkey is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020014" comment="sssd-passkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020015" comment="sssd-proxy is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020016" comment="sssd-proxy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020017" comment="sssd-tools is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020018" comment="sssd-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020019" comment="sssd-winbind-idmap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020020" comment="sssd-winbind-idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020021" comment="libipa_hbac is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020022" comment="libipa_hbac is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020023" comment="libsss_autofs is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020024" comment="libsss_autofs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020025" comment="libsss_certmap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020026" comment="libsss_certmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020027" comment="libsss_idmap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020028" comment="libsss_idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020029" comment="libsss_nss_idmap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020030" comment="libsss_nss_idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020031" comment="libsss_sudo is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020032" comment="libsss_sudo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020033" comment="python3-libipa_hbac is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020034" comment="python3-libipa_hbac is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020035" comment="python3-libsss_nss_idmap is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020036" comment="python3-libsss_nss_idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020037" comment="python3-sss is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020038" comment="python3-sss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020039" comment="python3-sss-murmur is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020040" comment="python3-sss-murmur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020041" comment="sssd is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020042" comment="sssd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020043" comment="sssd-ad is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020044" comment="sssd-ad is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020045" comment="sssd-client is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020046" comment="sssd-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020047" comment="sssd-common is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020048" comment="sssd-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020049" comment="sssd-common-pac is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020050" comment="sssd-common-pac is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020051" comment="sssd-dbus is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020052" comment="sssd-dbus is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020053" comment="sssd-idp is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020054" comment="sssd-idp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020055" comment="libsss_nss_idmap-devel is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020056" comment="libsss_nss_idmap-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020057" comment="python3-sssdconfig is earlier than 0:2.11.1-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020058" comment="python3-sssdconfig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264164" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4164: git-lfs security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:4164" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4164"/>
        <reference ref_id="ALSA-2026:4164" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4164.html"/>
        <description>Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-10"/>
          <updated date="2026-03-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20264164001" comment="git-lfs is earlier than 0:3.6.1-7.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063002" comment="git-lfs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523295" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23295: podman security update (Moderate)</title>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2025:23295" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23295"/>
        <reference ref_id="ALSA-2025:23295" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23295.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-16"/>
          <updated date="2025-12-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523295001" comment="podman is earlier than 7:5.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523295002" comment="podman-remote is earlier than 7:5.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523295003" comment="podman-tests is earlier than 7:5.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523295004" comment="podman-docker is earlier than 7:5.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260025" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0025: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-14321" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14321"/>
        <reference ref_id="CVE-2025-14322" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14322"/>
        <reference ref_id="CVE-2025-14323" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14323"/>
        <reference ref_id="CVE-2025-14324" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14324"/>
        <reference ref_id="CVE-2025-14325" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14325"/>
        <reference ref_id="CVE-2025-14328" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14328"/>
        <reference ref_id="CVE-2025-14329" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14329"/>
        <reference ref_id="CVE-2025-14330" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14330"/>
        <reference ref_id="CVE-2025-14331" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14331"/>
        <reference ref_id="CVE-2025-14333" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14333"/>
        <reference ref_id="RHSA-2026:0025" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0025"/>
        <reference ref_id="ALSA-2026:0025" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0025.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: Memory safety bugs fixed in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146 (CVE-2025-14333)
  * firefox: Use-after-free in the WebRTC: Signaling component (CVE-2025-14321)
  * firefox: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2025-14325)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component (CVE-2025-14322)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2025-14328)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2025-14329)
  * firefox: Same-origin policy bypass in the Request Handling component (CVE-2025-14331)
  * firefox: Privilege escalation in the DOM: Notifications component (CVE-2025-14323)
  * firefox: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2025-14330)
  * firefox: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2025-14324)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-05"/>
          <updated date="2026-01-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2420502" id="2420502"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420503" id="2420503"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420504" id="2420504"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420506" id="2420506"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420508" id="2420508"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420509" id="2420509"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420512" id="2420512"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420513" id="2420513"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420516" id="2420516"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2420517" id="2420517"></bugzilla>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14321" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14321</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14322" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14322</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14323" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14323</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14324" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14324</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14325" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-14325</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14328" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14328</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14329" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14329</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14330" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14330</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14331" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14331</cve>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14333" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14333</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20260025001" comment="thunderbird is earlier than 0:140.6.0-1.el10_1.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523306" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23306: binutils security update (Moderate)</title>
        <reference ref_id="CVE-2025-11082" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11082"/>
        <reference ref_id="CVE-2025-11083" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11083"/>
        <reference ref_id="RHSA-2025:23306" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23306"/>
        <reference ref_id="ALSA-2025:23306" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23306.html"/>
        <description>The binutils packages provide a collection of binary utilities for the manipulation of object code in various object file formats. It includes the ar, as, gprof, ld, nm, objcopy, objdump, ranlib, readelf, size, strings, strip, and addr2line utilities.  

Security Fix(es):  

  * binutils: GNU Binutils Linker heap-based overflow (CVE-2025-11082)
  * binutils: GNU Binutils Linker heap-based overflow (CVE-2025-11083)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-16"/>
          <updated date="2025-12-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2399943" id="2399943"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2399948" id="2399948"></bugzilla>
          <cve public="20250927" href="https://access.redhat.com/security/cve/CVE-2025-11082" impact="Moderate" cwe="(CWE-119|CWE-122)" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L">CVE-2025-11082</cve>
          <cve public="20250927" href="https://access.redhat.com/security/cve/CVE-2025-11083" impact="Moderate" cwe="(CWE-119|CWE-122)" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L">CVE-2025-11083</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523306001" comment="binutils is earlier than 0:2.41-58.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155002" comment="binutils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523306002" comment="binutils-devel is earlier than 0:2.41-58.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155004" comment="binutils-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523306003" comment="binutils-gold is earlier than 0:2.41-58.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520155006" comment="binutils-gold is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263939" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3939: nfs-utils security update (Moderate)</title>
        <reference ref_id="CVE-2025-12801" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-12801"/>
        <reference ref_id="RHSA-2026:3939" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3939"/>
        <reference ref_id="ALSA-2026:3939" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3939.html"/>
        <description>The nfs-utils packages provide a daemon for the kernel Network File System (NFS) server and related tools, which provides better performance than the traditional Linux NFS server used by most users. These packages also contain the mount.nfs, umount.nfs, and showmount programs.   

Security Fix(es):  

  * nfs-utils: rpc.mountd in the nfs-utils privilege escalation (CVE-2025-12801)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-05"/>
          <updated date="2026-03-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2413081" id="2413081"></bugzilla>
          <cve public="20260304" href="https://access.redhat.com/security/cve/CVE-2025-12801" impact="Moderate" cwe="CWE-279" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N">CVE-2025-12801</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939001" comment="libnfsidmap is earlier than 1:2.8.3-0.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939002" comment="libnfsidmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939003" comment="nfs-utils is earlier than 1:2.8.3-0.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939004" comment="nfs-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939005" comment="nfs-utils-coreos is earlier than 1:2.8.3-0.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939006" comment="nfs-utils-coreos is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939007" comment="nfsv4-client-utils is earlier than 1:2.8.3-0.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939008" comment="nfsv4-client-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939009" comment="libnfsidmap-devel is earlier than 1:2.8.3-0.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263939010" comment="libnfsidmap-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260845" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0845: brotli security update (Important)</title>
        <reference ref_id="CVE-2025-6176" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6176"/>
        <reference ref_id="RHSA-2026:0845" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0845"/>
        <reference ref_id="ALSA-2026:0845" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0845.html"/>
        <description>Brotli is a generic-purpose lossless compression algorithm that compresses data using a combination of a modern variant of the LZ77 algorithm, Huffman coding and 2nd order context modeling, with a compression ratio comparable to the best currently available general-purpose compression methods. It is similar in speed with deflate but offers more dense compression.   

Security Fix(es):  

  * Scrapy: python-scrapy: brotli: Python brotli decompression bomb DoS (CVE-2025-6176)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-20"/>
          <updated date="2026-01-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2408762" id="2408762"></bugzilla>
          <cve public="20251031" href="https://access.redhat.com/security/cve/CVE-2025-6176" impact="Important" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-6176</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845001" comment="brotli is earlier than 0:1.1.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845002" comment="brotli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845003" comment="brotli-devel is earlier than 0:1.1.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845004" comment="brotli-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845005" comment="libbrotli is earlier than 0:1.1.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845006" comment="libbrotli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845007" comment="python3-brotli is earlier than 0:1.1.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260845008" comment="python3-brotli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523279" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23279: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-38499" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38499"/>
        <reference ref_id="CVE-2025-39984" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39984"/>
        <reference ref_id="RHSA-2025:23279" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23279"/>
        <reference ref_id="ALSA-2025:23279" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23279.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns (CVE-2025-38499)
  * kernel: net: tun: Update napi-&gt;skb after XDP process (CVE-2025-39984)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-16"/>
          <updated date="2025-12-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2387670" id="2387670"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404111" id="2404111"></bugzilla>
          <cve public="20250811" href="https://access.redhat.com/security/cve/CVE-2025-38499" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38499</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39984" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-39984</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279001" comment="kernel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279002" comment="kernel-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279003" comment="kernel-debug is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279004" comment="kernel-debug-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279011" comment="kernel-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279013" comment="kernel-headers is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279014" comment="kernel-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279015" comment="kernel-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279018" comment="kernel-rt is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279019" comment="kernel-rt-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279030" comment="kernel-tools is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279034" comment="perf is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279035" comment="python3-perf is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279036" comment="rtla is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279037" comment="rv is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279045" comment="kernel-64k is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279046" comment="kernel-64k-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279073" comment="libperf is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523279075" comment="kernel-doc is earlier than 0:6.12.0-124.21.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523141" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23141: ruby security update (Moderate)</title>
        <reference ref_id="CVE-2025-24294" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-24294"/>
        <reference ref_id="CVE-2025-58767" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58767"/>
        <reference ref_id="CVE-2025-61594" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61594"/>
        <reference ref_id="RHSA-2025:23141" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23141"/>
        <reference ref_id="ALSA-2025:23141" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23141.html"/>
        <description>Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.  

Security Fix(es):  

  * resolv: Denial of Service in resolv gem (CVE-2025-24294)
  * rexml: REXML denial of service (CVE-2025-58767)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2025-12-11"/>
          <updated date="2025-12-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2379684" id="2379684"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2396186" id="2396186"></bugzilla>
          <cve public="20250712" href="https://access.redhat.com/security/cve/CVE-2025-24294" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-24294</cve>
          <cve public="20250917" href="https://access.redhat.com/security/cve/CVE-2025-58767" impact="Moderate" cwe="CWE-776" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-58767</cve>
          <cve public="20251230" href="https://access.redhat.com/security/cve/CVE-2025-61594" impact="Moderate" cwe="CWE-212" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2025-61594</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141001" comment="ruby is earlier than 0:3.3.10-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131002" comment="ruby is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141002" comment="ruby-bundled-gems is earlier than 0:3.3.10-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131004" comment="ruby-bundled-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141003" comment="ruby-devel is earlier than 0:3.3.10-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131006" comment="ruby-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141004" comment="ruby-libs is earlier than 0:3.3.10-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131008" comment="ruby-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141005" comment="rubygem-bigdecimal is earlier than 0:3.1.5-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131010" comment="rubygem-bigdecimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141006" comment="rubygem-io-console is earlier than 0:0.7.1-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131012" comment="rubygem-io-console is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141007" comment="rubygem-json is earlier than 0:2.7.2-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131014" comment="rubygem-json is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141008" comment="rubygem-psych is earlier than 0:5.1.2-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131016" comment="rubygem-psych is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141009" comment="rubygem-racc is earlier than 0:1.7.3-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131018" comment="rubygem-racc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141010" comment="rubygem-rbs is earlier than 0:3.4.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131020" comment="rubygem-rbs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141011" comment="ruby-default-gems is earlier than 0:3.3.10-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131022" comment="ruby-default-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141012" comment="rubygem-bundler is earlier than 0:2.5.22-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131024" comment="rubygem-bundler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141013" comment="rubygem-irb is earlier than 0:1.13.1-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131026" comment="rubygem-irb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141014" comment="rubygem-minitest is earlier than 0:5.20.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131028" comment="rubygem-minitest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141015" comment="rubygem-power_assert is earlier than 0:2.0.3-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131030" comment="rubygem-power_assert is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141016" comment="rubygem-rake is earlier than 0:13.1.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131032" comment="rubygem-rake is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141017" comment="rubygem-rdoc is earlier than 0:6.6.3.1-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131034" comment="rubygem-rdoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141018" comment="rubygem-rexml is earlier than 0:3.4.4-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131036" comment="rubygem-rexml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141019" comment="rubygem-rss is earlier than 0:0.3.1-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131038" comment="rubygem-rss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141020" comment="rubygem-test-unit is earlier than 0:3.6.1-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131040" comment="rubygem-test-unit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141021" comment="rubygem-typeprof is earlier than 0:0.21.9-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131042" comment="rubygem-typeprof is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141022" comment="rubygems is earlier than 0:3.5.22-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131044" comment="rubygems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141023" comment="rubygems-devel is earlier than 0:3.5.22-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131046" comment="rubygems-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523141024" comment="ruby-doc is earlier than 0:3.3.10-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131048" comment="ruby-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523932" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23932: httpd security update (Important)</title>
        <reference ref_id="CVE-2025-58098" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58098"/>
        <reference ref_id="CVE-2025-65082" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-65082"/>
        <reference ref_id="CVE-2025-66200" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-66200"/>
        <reference ref_id="RHSA-2025:23932" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23932"/>
        <reference ref_id="ALSA-2025:23932" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23932.html"/>
        <description>The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server.  

Security Fix(es):  

  * httpd: Apache HTTP Server: CGI environment variable override (CVE-2025-65082)
  * httpd: Apache HTTP Server: mod_userdir+suexec bypass via AllowOverride FileInfo (CVE-2025-66200)
  * httpd: Apache HTTP Server: Server Side Includes adds query string to #exec cmd=... (CVE-2025-58098)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-22"/>
          <updated date="2025-12-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2419139" id="2419139"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419262" id="2419262"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419365" id="2419365"></bugzilla>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-58098" impact="Important" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L">CVE-2025-58098</cve>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-65082" impact="Moderate" cwe="CWE-150" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2025-65082</cve>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-66200" impact="Moderate" cwe="CWE-305" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L">CVE-2025-66200</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523932001" comment="httpd is earlier than 0:2.4.63-4.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095010" comment="httpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523932002" comment="httpd-core is earlier than 0:2.4.63-4.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095012" comment="httpd-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523932003" comment="httpd-devel is earlier than 0:2.4.63-4.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095014" comment="httpd-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523932004" comment="httpd-filesystem is earlier than 0:2.4.63-4.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095020" comment="httpd-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260770" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0770: gpsd security update (Important)</title>
        <reference ref_id="CVE-2025-67268" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-67268"/>
        <reference ref_id="CVE-2025-67269" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-67269"/>
        <reference ref_id="RHSA-2026:0770" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0770"/>
        <reference ref_id="ALSA-2026:0770" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0770.html"/>
        <description>gpsd is a service daemon that mediates access to a GPS sensor connected to the host computer by serial or USB interface, making its data on the location/course/velocity of the sensor available to be queried on TCP port 2947 of the host computer. With gpsd, multiple GPS client applications (such as navigational and war-driving software) can share access to a GPS without contention or loss of data. Also, gpsd responds to queries with a format that is substantially easier to parse than NMEA 0183.  

Security Fix(es):  

  * gpsd: gpsd: Denial of Service due to malformed NAVCOM packet parsing (CVE-2025-67269)
  * gpsd: gpsd: Arbitrary code execution via heap-based out-of-bounds write in NMEA2000 packet handling (CVE-2025-67268)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-19"/>
          <updated date="2026-01-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2426810" id="2426810"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2426835" id="2426835"></bugzilla>
          <cve public="20260102" href="https://access.redhat.com/security/cve/CVE-2025-67268" impact="Important" cwe="CWE-1285" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-67268</cve>
          <cve public="20260102" href="https://access.redhat.com/security/cve/CVE-2025-67269" impact="Important" cwe="CWE-191" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-67269</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260770001" comment="gpsd is earlier than 1:3.26.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260770002" comment="gpsd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260770003" comment="gpsd-clients is earlier than 1:3.26.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260770004" comment="gpsd-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260770005" comment="python3-gpsd is earlier than 1:3.26.1-1.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260770006" comment="python3-gpsd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523940" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23940: python3.12 security update (Moderate)</title>
        <reference ref_id="CVE-2025-8291" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-8291"/>
        <reference ref_id="RHSA-2025:23940" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23940"/>
        <reference ref_id="ALSA-2025:23940" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23940.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * cpython: python: Python zipfile End of Central Directory (EOCD) Locator record offset not checked (CVE-2025-8291)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-22"/>
          <updated date="2025-12-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2402342" id="2402342"></bugzilla>
          <cve public="20251007" href="https://access.redhat.com/security/cve/CVE-2025-8291" impact="Moderate" cwe="CWE-130" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N">CVE-2025-8291</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940001" comment="python3-idle is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940002" comment="python3-test is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940003" comment="python3 is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940004" comment="python3-devel is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940005" comment="python3-libs is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940006" comment="python3-tkinter is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940007" comment="python3-debug is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523940008" comment="python-unversioned-command is earlier than 0:3.12.12-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202620693" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:20693: mysql8.4 security update (Moderate)</title>
        <reference ref_id="CVE-2026-21998" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21998"/>
        <reference ref_id="CVE-2026-22001" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22001"/>
        <reference ref_id="CVE-2026-22002" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22002"/>
        <reference ref_id="CVE-2026-22004" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22004"/>
        <reference ref_id="CVE-2026-22005" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22005"/>
        <reference ref_id="CVE-2026-22009" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22009"/>
        <reference ref_id="CVE-2026-22015" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22015"/>
        <reference ref_id="CVE-2026-22017" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22017"/>
        <reference ref_id="CVE-2026-34270" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34270"/>
        <reference ref_id="CVE-2026-34271" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34271"/>
        <reference ref_id="CVE-2026-34276" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34276"/>
        <reference ref_id="CVE-2026-34303" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34303"/>
        <reference ref_id="CVE-2026-34304" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34304"/>
        <reference ref_id="CVE-2026-34308" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34308"/>
        <reference ref_id="CVE-2026-35236" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35236"/>
        <reference ref_id="CVE-2026-35237" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35237"/>
        <reference ref_id="CVE-2026-35238" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35238"/>
        <reference ref_id="CVE-2026-35239" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35239"/>
        <reference ref_id="CVE-2026-35240" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35240"/>
        <reference ref_id="RHSA-2026:20693" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:20693"/>
        <reference ref_id="ALSA-2026:20693" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-20693.html"/>
        <description>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.  

Security Fix(es):  

  * mysql: InnoDB unspecified vulnerability (CPU Apr 2026) (CVE-2026-22004)
  * mysql: Information Schema unspecified vulnerability (CPU Apr 2026) (CVE-2026-22001)
  * mysql: Group Replication Plugin unspecified vulnerability (CPU Apr 2026) (CVE-2026-34271)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-22009)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2026) (CVE-2026-35237)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-21998)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-22005)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2026) (CVE-2026-35238)
  * mysql: DML unspecified vulnerability (CPU Apr 2026) (CVE-2026-35239)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-22002)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2026) (CVE-2026-35236)
  * mysql: JSON unspecified vulnerability (CPU Apr 2026) (CVE-2026-34308)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-34303)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-35240)
  * mysql: Optimizer unspecified vulnerability (CPU Apr 2026) (CVE-2026-22017)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2026) (CVE-2026-34304)
  * mysql: Information Schema unspecified vulnerability (CPU Apr 2026) (CVE-2026-22015)
  * mysql: Group Replication Plugin unspecified vulnerability (CPU Apr 2026) (CVE-2026-34276)
  * mysql: Group Replication Plugin unspecified vulnerability (CPU Apr 2026) (CVE-2026-34270)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-26"/>
          <updated date="2026-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460274" id="2460274"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460275" id="2460275"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460276" id="2460276"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460279" id="2460279"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460295" id="2460295"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460312" id="2460312"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460315" id="2460315"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460316" id="2460316"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460323" id="2460323"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460324" id="2460324"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460325" id="2460325"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460326" id="2460326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460329" id="2460329"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460335" id="2460335"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460342" id="2460342"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460344" id="2460344"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460348" id="2460348"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460356" id="2460356"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460358" id="2460358"></bugzilla>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-21998" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21998</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22001" impact="Low" cwe="CWE-538" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N">CVE-2026-22001</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22002" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-22002</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22004" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-22004</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22005" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-22005</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22009" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-22009</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22015" impact="Moderate" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVE-2026-22015</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22017" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-22017</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34270" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34270</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34271" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34271</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34276" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34276</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34303" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34303</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34304" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34304</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34308" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34308</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-35236" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35236</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-35237" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35237</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-35238" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35238</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-35239" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35239</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-35240" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35240</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693001" comment="mysql8.4 is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699002" comment="mysql8.4 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693002" comment="mysql8.4-libs is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699004" comment="mysql8.4-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693003" comment="mysql8.4-server is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699006" comment="mysql8.4-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693004" comment="mysql8.4-devel is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699008" comment="mysql8.4-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693005" comment="mysql8.4-test is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699010" comment="mysql8.4-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693006" comment="mysql8.4-common is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699014" comment="mysql8.4-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693007" comment="mysql8.4-errmsg is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699016" comment="mysql8.4-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620693008" comment="mysql8.4-test-data is earlier than 0:8.4.9-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699018" comment="mysql8.4-test-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261086" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1086: python-urllib3 security update (Important)</title>
        <reference ref_id="CVE-2025-66418" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-66418"/>
        <reference ref_id="CVE-2025-66471" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-66471"/>
        <reference ref_id="CVE-2026-21441" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21441"/>
        <reference ref_id="RHSA-2026:1086" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1086"/>
        <reference ref_id="ALSA-2026:1086" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1086.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion (CVE-2025-66418)
  * urllib3: urllib3 Streaming API improperly handles highly compressed data (CVE-2025-66471)
  * urllib3: urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (streaming API) (CVE-2026-21441)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-26"/>
          <updated date="2026-01-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2419455" id="2419455"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419467" id="2419467"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2427726" id="2427726"></bugzilla>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-66418" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-66418</cve>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-66471" impact="Important" cwe="CWE-409">CVE-2025-66471</cve>
          <cve public="20260107" href="https://access.redhat.com/security/cve/CVE-2026-21441" impact="Important" cwe="CWE-409">CVE-2026-21441</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261086001" comment="python3-urllib3 is earlier than 0:1.26.19-2.el10_1.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261086002" comment="python3-urllib3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202523664" version="635" class="patch">
      <metadata>
        <title>ALSA-2025:23664: opentelemetry-collector security update (Important)</title>
        <reference ref_id="CVE-2025-68156" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68156"/>
        <reference ref_id="RHSA-2025:23664" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2025:23664"/>
        <reference ref_id="ALSA-2025:23664" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2025-23664.html"/>
        <description>Collector with the supported components for a AlmaLinux build of OpenTelemetry  

Security Fix(es):  

  * github.com/expr-lang/expr: Expr: Denial of Service via uncontrolled recursion in expression evaluation (CVE-2025-68156)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2025 AlmaLinux OS</rights>
          <issued date="2025-12-18"/>
          <updated date="2025-12-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2422891" id="2422891"></bugzilla>
          <cve public="20251216" href="https://access.redhat.com/security/cve/CVE-2025-68156" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-68156</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202523664001" comment="opentelemetry-collector is earlier than 0:0.135.0-2.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850002" comment="opentelemetry-collector is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202610707" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:10707: gdk-pixbuf2 security update (Important)</title>
        <reference ref_id="CVE-2026-5201" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5201"/>
        <reference ref_id="RHSA-2026:10707" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:10707"/>
        <reference ref_id="ALSA-2026:10707" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-10707.html"/>
        <description>The gdk-pixbuf2 packages provide an image loading library that can be extended by loadable modules for new image formats. It is used by toolkits such as GTK+ or clutter.  

Security Fix(es):  

  * gdk-pixbuf: gdk-pixbuf: Denial of Service via heap-based buffer overflow when processing a specially crafted JPEG image (CVE-2026-5201)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-27"/>
          <updated date="2026-04-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453291" id="2453291"></bugzilla>
          <cve public="20260331" href="https://access.redhat.com/security/cve/CVE-2026-5201" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-5201</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610707001" comment="gdk-pixbuf2 is earlier than 0:2.42.12-4.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610707002" comment="gdk-pixbuf2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610707003" comment="gdk-pixbuf2-devel is earlier than 0:2.42.12-4.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610707004" comment="gdk-pixbuf2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610707005" comment="gdk-pixbuf2-modules is earlier than 0:2.42.12-4.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610707006" comment="gdk-pixbuf2-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202623231" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:23231: unbound security update (Important)</title>
        <reference ref_id="CVE-2026-33278" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33278"/>
        <reference ref_id="CVE-2026-42944" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42944"/>
        <reference ref_id="CVE-2026-42959" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42959"/>
        <reference ref_id="RHSA-2026:23231" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:23231"/>
        <reference ref_id="ALSA-2026:23231" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-23231.html"/>
        <description>The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver.   

Security Fix(es):  

  * unbound: Heap overflow and crash with multiple nsid, cookie, padding EDNS options (CVE-2026-42944)
  * unbound: Unbound DNSSEC Validator Denial of Service via Incorrect Write Offset Counter in Chase-Reply Messages (CVE-2026-42959)
  * unbound: Unbound DNSSEC Validator Use-After-Free via Deep Copy Pointer Overwrite Leading to DoS and Possible Remote Code Execution (CVE-2026-33278)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-04"/>
          <updated date="2026-06-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2479774" id="2479774"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479806" id="2479806"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479808" id="2479808"></bugzilla>
          <cve public="20260520" href="https://access.redhat.com/security/cve/CVE-2026-33278" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-33278</cve>
          <cve public="20260520" href="https://access.redhat.com/security/cve/CVE-2026-42944" impact="Important" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42944</cve>
          <cve public="20260520" href="https://access.redhat.com/security/cve/CVE-2026-42959" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42959</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231001" comment="python3-unbound is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047002" comment="python3-unbound is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231002" comment="unbound is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047004" comment="unbound is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231003" comment="unbound-anchor is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047006" comment="unbound-anchor is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231004" comment="unbound-dracut is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047008" comment="unbound-dracut is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231005" comment="unbound-libs is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047010" comment="unbound-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231006" comment="unbound-utils is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231007" comment="unbound-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623231008" comment="unbound-devel is earlier than 0:1.24.2-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258047012" comment="unbound-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202620594" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:20594: glibc security update (Moderate)</title>
        <reference ref_id="CVE-2026-4046" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4046"/>
        <reference ref_id="RHSA-2026:20594" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:20594"/>
        <reference ref_id="ALSA-2026:20594" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-20594.html"/>
        <description>The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.  

Security Fix(es):  

  * glibc: glibc: Denial of Service via iconv() function with specific character sets (CVE-2026-4046)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-26"/>
          <updated date="2026-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453117" id="2453117"></bugzilla>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-4046" impact="Moderate" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-4046</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594001" comment="glibc is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066002" comment="glibc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594002" comment="glibc-all-langpacks is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066004" comment="glibc-all-langpacks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594003" comment="glibc-common is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066006" comment="glibc-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594004" comment="glibc-devel is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066008" comment="glibc-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594005" comment="glibc-gconv-extra is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066010" comment="glibc-gconv-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594006" comment="glibc-langpack-aa is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066012" comment="glibc-langpack-aa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594007" comment="glibc-langpack-af is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066014" comment="glibc-langpack-af is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594008" comment="glibc-langpack-agr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066016" comment="glibc-langpack-agr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594009" comment="glibc-langpack-ak is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066018" comment="glibc-langpack-ak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594010" comment="glibc-langpack-am is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066020" comment="glibc-langpack-am is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594011" comment="glibc-langpack-an is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066022" comment="glibc-langpack-an is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594012" comment="glibc-langpack-anp is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066024" comment="glibc-langpack-anp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594013" comment="glibc-langpack-ar is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066026" comment="glibc-langpack-ar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594014" comment="glibc-langpack-as is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066028" comment="glibc-langpack-as is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594015" comment="glibc-langpack-ast is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066030" comment="glibc-langpack-ast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594016" comment="glibc-langpack-ayc is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066098" comment="glibc-langpack-ayc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594017" comment="glibc-langpack-az is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066100" comment="glibc-langpack-az is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594018" comment="glibc-langpack-be is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066102" comment="glibc-langpack-be is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594019" comment="glibc-langpack-bem is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066104" comment="glibc-langpack-bem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594020" comment="glibc-langpack-ber is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066106" comment="glibc-langpack-ber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594021" comment="glibc-langpack-bg is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066108" comment="glibc-langpack-bg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594022" comment="glibc-langpack-bhb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066110" comment="glibc-langpack-bhb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594023" comment="glibc-langpack-bho is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066112" comment="glibc-langpack-bho is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594024" comment="glibc-langpack-bi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066114" comment="glibc-langpack-bi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594025" comment="glibc-langpack-bn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066116" comment="glibc-langpack-bn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594026" comment="glibc-langpack-bo is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066118" comment="glibc-langpack-bo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594027" comment="glibc-langpack-br is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066120" comment="glibc-langpack-br is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594028" comment="glibc-langpack-brx is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066122" comment="glibc-langpack-brx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594029" comment="glibc-langpack-bs is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066124" comment="glibc-langpack-bs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594030" comment="glibc-langpack-byn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066126" comment="glibc-langpack-byn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594031" comment="glibc-langpack-ca is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066128" comment="glibc-langpack-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594032" comment="glibc-langpack-ce is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066130" comment="glibc-langpack-ce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594033" comment="glibc-langpack-chr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066132" comment="glibc-langpack-chr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594034" comment="glibc-langpack-ckb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066134" comment="glibc-langpack-ckb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594035" comment="glibc-langpack-cmn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066136" comment="glibc-langpack-cmn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594036" comment="glibc-langpack-crh is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066138" comment="glibc-langpack-crh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594037" comment="glibc-langpack-cs is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066140" comment="glibc-langpack-cs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594038" comment="glibc-langpack-csb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066142" comment="glibc-langpack-csb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594039" comment="glibc-langpack-cv is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066144" comment="glibc-langpack-cv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594040" comment="glibc-langpack-cy is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066146" comment="glibc-langpack-cy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594041" comment="glibc-langpack-da is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066148" comment="glibc-langpack-da is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594042" comment="glibc-langpack-de is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066150" comment="glibc-langpack-de is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594043" comment="glibc-langpack-doi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066152" comment="glibc-langpack-doi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594044" comment="glibc-langpack-dsb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066154" comment="glibc-langpack-dsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594045" comment="glibc-langpack-dv is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066156" comment="glibc-langpack-dv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594046" comment="glibc-langpack-dz is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066158" comment="glibc-langpack-dz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594047" comment="glibc-langpack-el is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066160" comment="glibc-langpack-el is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594048" comment="glibc-langpack-en is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066162" comment="glibc-langpack-en is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594049" comment="glibc-langpack-eo is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066164" comment="glibc-langpack-eo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594050" comment="glibc-langpack-es is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066166" comment="glibc-langpack-es is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594051" comment="glibc-langpack-et is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066168" comment="glibc-langpack-et is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594052" comment="glibc-langpack-eu is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066170" comment="glibc-langpack-eu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594053" comment="glibc-langpack-fa is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066172" comment="glibc-langpack-fa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594054" comment="glibc-langpack-ff is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066174" comment="glibc-langpack-ff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594055" comment="glibc-langpack-fi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066176" comment="glibc-langpack-fi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594056" comment="glibc-langpack-fil is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066178" comment="glibc-langpack-fil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594057" comment="glibc-langpack-fo is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066180" comment="glibc-langpack-fo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594058" comment="glibc-langpack-fr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066182" comment="glibc-langpack-fr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594059" comment="glibc-langpack-fur is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066184" comment="glibc-langpack-fur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594060" comment="glibc-langpack-fy is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066186" comment="glibc-langpack-fy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594061" comment="glibc-langpack-ga is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066188" comment="glibc-langpack-ga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594062" comment="glibc-langpack-gbm is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066190" comment="glibc-langpack-gbm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594063" comment="glibc-langpack-gd is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066192" comment="glibc-langpack-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594064" comment="glibc-langpack-gez is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066194" comment="glibc-langpack-gez is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594065" comment="glibc-langpack-gl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066196" comment="glibc-langpack-gl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594066" comment="glibc-langpack-gu is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066198" comment="glibc-langpack-gu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594067" comment="glibc-langpack-gv is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066200" comment="glibc-langpack-gv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594068" comment="glibc-langpack-ha is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066202" comment="glibc-langpack-ha is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594069" comment="glibc-langpack-hak is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066204" comment="glibc-langpack-hak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594070" comment="glibc-langpack-he is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066206" comment="glibc-langpack-he is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594071" comment="glibc-langpack-hi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066208" comment="glibc-langpack-hi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594072" comment="glibc-langpack-hif is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066210" comment="glibc-langpack-hif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594073" comment="glibc-langpack-hne is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066212" comment="glibc-langpack-hne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594074" comment="glibc-langpack-hr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066214" comment="glibc-langpack-hr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594075" comment="glibc-langpack-hsb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066216" comment="glibc-langpack-hsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594076" comment="glibc-langpack-ht is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066218" comment="glibc-langpack-ht is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594077" comment="glibc-langpack-hu is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066220" comment="glibc-langpack-hu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594078" comment="glibc-langpack-hy is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066222" comment="glibc-langpack-hy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594079" comment="glibc-langpack-ia is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066224" comment="glibc-langpack-ia is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594080" comment="glibc-langpack-id is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066226" comment="glibc-langpack-id is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594081" comment="glibc-langpack-ig is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066228" comment="glibc-langpack-ig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594082" comment="glibc-langpack-ik is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066230" comment="glibc-langpack-ik is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594083" comment="glibc-langpack-is is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066232" comment="glibc-langpack-is is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594084" comment="glibc-langpack-it is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066234" comment="glibc-langpack-it is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594085" comment="glibc-langpack-iu is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066236" comment="glibc-langpack-iu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594086" comment="glibc-langpack-ja is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066238" comment="glibc-langpack-ja is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594087" comment="glibc-langpack-ka is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066240" comment="glibc-langpack-ka is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594088" comment="glibc-langpack-kab is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066242" comment="glibc-langpack-kab is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594089" comment="glibc-langpack-kk is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066244" comment="glibc-langpack-kk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594090" comment="glibc-langpack-kl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066246" comment="glibc-langpack-kl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594091" comment="glibc-langpack-km is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066248" comment="glibc-langpack-km is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594092" comment="glibc-langpack-kn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066250" comment="glibc-langpack-kn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594093" comment="glibc-langpack-ko is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066252" comment="glibc-langpack-ko is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594094" comment="glibc-langpack-kok is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066254" comment="glibc-langpack-kok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594095" comment="glibc-langpack-ks is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066256" comment="glibc-langpack-ks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594096" comment="glibc-langpack-ku is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066258" comment="glibc-langpack-ku is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594097" comment="glibc-langpack-kv is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066260" comment="glibc-langpack-kv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594098" comment="glibc-langpack-kw is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066262" comment="glibc-langpack-kw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594099" comment="glibc-langpack-ky is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066264" comment="glibc-langpack-ky is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594100" comment="glibc-langpack-lb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066266" comment="glibc-langpack-lb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594101" comment="glibc-langpack-lg is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066268" comment="glibc-langpack-lg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594102" comment="glibc-langpack-li is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066270" comment="glibc-langpack-li is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594103" comment="glibc-langpack-lij is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066272" comment="glibc-langpack-lij is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594104" comment="glibc-langpack-ln is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066274" comment="glibc-langpack-ln is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594105" comment="glibc-langpack-lo is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066276" comment="glibc-langpack-lo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594106" comment="glibc-langpack-lt is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066278" comment="glibc-langpack-lt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594107" comment="glibc-langpack-lv is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066280" comment="glibc-langpack-lv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594108" comment="glibc-langpack-lzh is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066282" comment="glibc-langpack-lzh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594109" comment="glibc-langpack-mag is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066284" comment="glibc-langpack-mag is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594110" comment="glibc-langpack-mai is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066286" comment="glibc-langpack-mai is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594111" comment="glibc-langpack-mfe is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066288" comment="glibc-langpack-mfe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594112" comment="glibc-langpack-mg is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066290" comment="glibc-langpack-mg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594113" comment="glibc-langpack-mhr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066292" comment="glibc-langpack-mhr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594114" comment="glibc-langpack-mi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066294" comment="glibc-langpack-mi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594115" comment="glibc-langpack-miq is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066296" comment="glibc-langpack-miq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594116" comment="glibc-langpack-mjw is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066298" comment="glibc-langpack-mjw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594117" comment="glibc-langpack-mk is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066300" comment="glibc-langpack-mk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594118" comment="glibc-langpack-ml is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066302" comment="glibc-langpack-ml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594119" comment="glibc-langpack-mn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066304" comment="glibc-langpack-mn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594120" comment="glibc-langpack-mni is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066306" comment="glibc-langpack-mni is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594121" comment="glibc-langpack-mnw is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066308" comment="glibc-langpack-mnw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594122" comment="glibc-langpack-mr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066310" comment="glibc-langpack-mr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594123" comment="glibc-langpack-ms is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066312" comment="glibc-langpack-ms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594124" comment="glibc-langpack-mt is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066314" comment="glibc-langpack-mt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594125" comment="glibc-langpack-my is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066316" comment="glibc-langpack-my is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594126" comment="glibc-langpack-nan is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066318" comment="glibc-langpack-nan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594127" comment="glibc-langpack-nb is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066320" comment="glibc-langpack-nb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594128" comment="glibc-langpack-nds is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066322" comment="glibc-langpack-nds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594129" comment="glibc-langpack-ne is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066324" comment="glibc-langpack-ne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594130" comment="glibc-langpack-nhn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066326" comment="glibc-langpack-nhn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594131" comment="glibc-langpack-niu is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066328" comment="glibc-langpack-niu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594132" comment="glibc-langpack-nl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066330" comment="glibc-langpack-nl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594133" comment="glibc-langpack-nn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066332" comment="glibc-langpack-nn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594134" comment="glibc-langpack-nr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066334" comment="glibc-langpack-nr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594135" comment="glibc-langpack-nso is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066336" comment="glibc-langpack-nso is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594136" comment="glibc-langpack-oc is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066338" comment="glibc-langpack-oc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594137" comment="glibc-langpack-om is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066340" comment="glibc-langpack-om is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594138" comment="glibc-langpack-or is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066342" comment="glibc-langpack-or is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594139" comment="glibc-langpack-os is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066344" comment="glibc-langpack-os is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594140" comment="glibc-langpack-pa is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066346" comment="glibc-langpack-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594141" comment="glibc-langpack-pap is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066348" comment="glibc-langpack-pap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594142" comment="glibc-langpack-pl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066350" comment="glibc-langpack-pl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594143" comment="glibc-langpack-ps is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066352" comment="glibc-langpack-ps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594144" comment="glibc-langpack-pt is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066354" comment="glibc-langpack-pt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594145" comment="glibc-langpack-quz is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066356" comment="glibc-langpack-quz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594146" comment="glibc-langpack-raj is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066358" comment="glibc-langpack-raj is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594147" comment="glibc-langpack-rif is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066360" comment="glibc-langpack-rif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594148" comment="glibc-langpack-ro is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066362" comment="glibc-langpack-ro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594149" comment="glibc-langpack-ru is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066364" comment="glibc-langpack-ru is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594150" comment="glibc-langpack-rw is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066366" comment="glibc-langpack-rw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594151" comment="glibc-langpack-sa is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066368" comment="glibc-langpack-sa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594152" comment="glibc-langpack-sah is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066370" comment="glibc-langpack-sah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594153" comment="glibc-langpack-sat is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066372" comment="glibc-langpack-sat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594154" comment="glibc-langpack-sc is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066374" comment="glibc-langpack-sc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594155" comment="glibc-langpack-sd is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066376" comment="glibc-langpack-sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594156" comment="glibc-langpack-se is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066378" comment="glibc-langpack-se is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594157" comment="glibc-langpack-sgs is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066380" comment="glibc-langpack-sgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594158" comment="glibc-langpack-shn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066382" comment="glibc-langpack-shn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594159" comment="glibc-langpack-shs is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066384" comment="glibc-langpack-shs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594160" comment="glibc-langpack-si is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066386" comment="glibc-langpack-si is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594161" comment="glibc-langpack-sid is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066388" comment="glibc-langpack-sid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594162" comment="glibc-langpack-sk is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066390" comment="glibc-langpack-sk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594163" comment="glibc-langpack-sl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066392" comment="glibc-langpack-sl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594164" comment="glibc-langpack-sm is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066394" comment="glibc-langpack-sm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594165" comment="glibc-langpack-so is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066396" comment="glibc-langpack-so is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594166" comment="glibc-langpack-sq is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066398" comment="glibc-langpack-sq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594167" comment="glibc-langpack-sr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066400" comment="glibc-langpack-sr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594168" comment="glibc-langpack-ss is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066402" comment="glibc-langpack-ss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594169" comment="glibc-langpack-ssy is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066404" comment="glibc-langpack-ssy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594170" comment="glibc-langpack-st is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066406" comment="glibc-langpack-st is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594171" comment="glibc-langpack-su is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066408" comment="glibc-langpack-su is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594172" comment="glibc-langpack-sv is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066410" comment="glibc-langpack-sv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594173" comment="glibc-langpack-sw is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066412" comment="glibc-langpack-sw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594174" comment="glibc-langpack-syr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066414" comment="glibc-langpack-syr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594175" comment="glibc-langpack-szl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066416" comment="glibc-langpack-szl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594176" comment="glibc-langpack-ta is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066418" comment="glibc-langpack-ta is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594177" comment="glibc-langpack-tcy is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066420" comment="glibc-langpack-tcy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594178" comment="glibc-langpack-te is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066422" comment="glibc-langpack-te is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594179" comment="glibc-langpack-tg is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066424" comment="glibc-langpack-tg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594180" comment="glibc-langpack-th is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066426" comment="glibc-langpack-th is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594181" comment="glibc-langpack-the is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066428" comment="glibc-langpack-the is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594182" comment="glibc-langpack-ti is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066430" comment="glibc-langpack-ti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594183" comment="glibc-langpack-tig is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066432" comment="glibc-langpack-tig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594184" comment="glibc-langpack-tk is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066434" comment="glibc-langpack-tk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594185" comment="glibc-langpack-tl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066032" comment="glibc-langpack-tl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594186" comment="glibc-langpack-tn is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066034" comment="glibc-langpack-tn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594187" comment="glibc-langpack-to is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066036" comment="glibc-langpack-to is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594188" comment="glibc-langpack-tok is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066038" comment="glibc-langpack-tok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594189" comment="glibc-langpack-tpi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066040" comment="glibc-langpack-tpi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594190" comment="glibc-langpack-tr is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066042" comment="glibc-langpack-tr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594191" comment="glibc-langpack-ts is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066044" comment="glibc-langpack-ts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594192" comment="glibc-langpack-tt is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066046" comment="glibc-langpack-tt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594193" comment="glibc-langpack-ug is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066048" comment="glibc-langpack-ug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594194" comment="glibc-langpack-uk is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066050" comment="glibc-langpack-uk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594195" comment="glibc-langpack-unm is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066052" comment="glibc-langpack-unm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594196" comment="glibc-langpack-ur is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066054" comment="glibc-langpack-ur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594197" comment="glibc-langpack-uz is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066056" comment="glibc-langpack-uz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594198" comment="glibc-langpack-ve is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066058" comment="glibc-langpack-ve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594199" comment="glibc-langpack-vi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066060" comment="glibc-langpack-vi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594200" comment="glibc-langpack-wa is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066062" comment="glibc-langpack-wa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594201" comment="glibc-langpack-wae is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066064" comment="glibc-langpack-wae is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594202" comment="glibc-langpack-wal is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066066" comment="glibc-langpack-wal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594203" comment="glibc-langpack-wo is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066068" comment="glibc-langpack-wo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594204" comment="glibc-langpack-xh is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066070" comment="glibc-langpack-xh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594205" comment="glibc-langpack-yi is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066072" comment="glibc-langpack-yi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594206" comment="glibc-langpack-yo is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066074" comment="glibc-langpack-yo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594207" comment="glibc-langpack-yue is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066076" comment="glibc-langpack-yue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594208" comment="glibc-langpack-yuw is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066078" comment="glibc-langpack-yuw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594209" comment="glibc-langpack-zgh is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066080" comment="glibc-langpack-zgh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594210" comment="glibc-langpack-zh is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066082" comment="glibc-langpack-zh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594211" comment="glibc-langpack-zu is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066084" comment="glibc-langpack-zu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594212" comment="glibc-locale-source is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066086" comment="glibc-locale-source is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594213" comment="glibc-minimal-langpack is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066088" comment="glibc-minimal-langpack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594214" comment="glibc-utils is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066090" comment="glibc-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594215" comment="libnsl is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066092" comment="libnsl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594216" comment="glibc-benchtests is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066094" comment="glibc-benchtests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594217" comment="glibc-nss-devel is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066096" comment="glibc-nss-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594218" comment="glibc-static is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066436" comment="glibc-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594219" comment="nss_db is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066438" comment="nss_db is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594220" comment="nss_hesiod is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066440" comment="nss_hesiod is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620594221" comment="glibc-doc is earlier than 0:2.39-124.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066442" comment="glibc-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260464" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0464: cups security update (Moderate)</title>
        <reference ref_id="CVE-2025-58436" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58436"/>
        <reference ref_id="CVE-2025-61915" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61915"/>
        <reference ref_id="RHSA-2026:0464" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0464"/>
        <reference ref_id="ALSA-2026:0464" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0464.html"/>
        <description>The Common UNIX Printing System (CUPS) provides a portable printing layer for Linux, UNIX, and similar operating systems.  

Security Fix(es):  

  * CUPS: Local denial-of-service via cupsd.conf update and related issues (CVE-2025-61915)
  * cups: Slow client communication leads to a possible DoS attack (CVE-2025-58436)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-12"/>
          <updated date="2026-01-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2416039" id="2416039"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2416040" id="2416040"></bugzilla>
          <cve public="20251201" href="https://access.redhat.com/security/cve/CVE-2025-58436" impact="Moderate" cwe="CWE-412" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58436</cve>
          <cve public="20251128" href="https://access.redhat.com/security/cve/CVE-2025-61915" impact="Moderate" cwe="CWE-1173" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H">CVE-2025-61915</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464001" comment="cups is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701002" comment="cups is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464002" comment="cups-client is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701004" comment="cups-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464003" comment="cups-devel is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701006" comment="cups-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464004" comment="cups-ipptool is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701008" comment="cups-ipptool is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464005" comment="cups-libs is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701010" comment="cups-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464006" comment="cups-lpd is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701012" comment="cups-lpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464007" comment="cups-printerapp is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701014" comment="cups-printerapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260464008" comment="cups-filesystem is earlier than 1:2.4.10-12.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701016" comment="cups-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260108" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0108: gcc-toolset-15-binutils security update (Moderate)</title>
        <reference ref_id="CVE-2025-11083" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11083"/>
        <reference ref_id="RHSA-2026:0108" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0108"/>
        <reference ref_id="ALSA-2026:0108" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0108.html"/>
        <description>Binutils is a collection of binary utilities, including ar (for creating, modifying and extracting from archives), as (a family of GNU assemblers), gprof (for displaying call graph profile data), ld (the GNU linker), nm (for listing symbols from object files), objcopy (for copying and translating object files), objdump (for displaying information from object files), ranlib (for generating an index for the contents of an archive), readelf (for displaying detailed information about binary files), size (for listing the section sizes of an object or archive file), strings (for listing printable strings from files), strip (for discarding symbols), and addr2line (for converting addresses to file and line).  

Security Fix(es):  

  * binutils: GNU Binutils Linker heap-based overflow (CVE-2025-11083)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-06"/>
          <updated date="2026-01-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2399948" id="2399948"></bugzilla>
          <cve public="20250927" href="https://access.redhat.com/security/cve/CVE-2025-11083" impact="Moderate" cwe="(CWE-119|CWE-122)" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L">CVE-2025-11083</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108001" comment="gcc-toolset-15-binutils is earlier than 0:2.44-7.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108002" comment="gcc-toolset-15-binutils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108003" comment="gcc-toolset-15-binutils-devel is earlier than 0:2.44-7.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108004" comment="gcc-toolset-15-binutils-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108005" comment="gcc-toolset-15-binutils-gold is earlier than 0:2.44-7.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108006" comment="gcc-toolset-15-binutils-gold is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108007" comment="gcc-toolset-15-binutils-gprofng is earlier than 0:2.44-7.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260108008" comment="gcc-toolset-15-binutils-gprofng is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260423" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0423: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2025-14523" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14523"/>
        <reference ref_id="RHSA-2026:0423" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0423"/>
        <reference ref_id="ALSA-2026:0423" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0423.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: libsoup: Duplicate Host Header Handling Causes Host-Parsing Discrepancy (First- vs Last-Value Wins) (CVE-2025-14523)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-12"/>
          <updated date="2026-01-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2421349" id="2421349"></bugzilla>
          <cve public="20251211" href="https://access.redhat.com/security/cve/CVE-2025-14523" impact="Important" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N">CVE-2025-14523</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260423001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260423002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260423003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264162" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4162: mysql8.4 security update (Moderate)</title>
        <reference ref_id="CVE-2026-21936" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21936"/>
        <reference ref_id="CVE-2026-21937" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21937"/>
        <reference ref_id="CVE-2026-21941" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21941"/>
        <reference ref_id="CVE-2026-21948" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21948"/>
        <reference ref_id="CVE-2026-21964" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21964"/>
        <reference ref_id="CVE-2026-21968" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21968"/>
        <reference ref_id="RHSA-2026:4162" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4162"/>
        <reference ref_id="ALSA-2026:4162" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4162.html"/>
        <description>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a client/server implementation consisting of a server daemon (mysqld) and many different client programs and libraries. The base package contains the standard MySQL client programs and generic MySQL files.  

Security Fix(es):  

  * mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21941)
  * mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21948)
  * mysql: InnoDB unspecified vulnerability (CPU Jan 2026) (CVE-2026-21936)
  * mysql: Optimizer unspecified vulnerability (CPU Jan 2026) (CVE-2026-21968)
  * mysql: DDL unspecified vulnerability (CPU Jan 2026) (CVE-2026-21937)
  * mysql: Thread Pooling unspecified vulnerability (CPU Jan 2026) (CVE-2026-21964)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-10"/>
          <updated date="2026-03-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431384" id="2431384"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431385" id="2431385"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431402" id="2431402"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431409" id="2431409"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431413" id="2431413"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431431" id="2431431"></bugzilla>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21936" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21936</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21937" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21937</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21941" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21941</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21948" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21948</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21964" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21964</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21968" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21968</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162001" comment="mysql8.4 is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699002" comment="mysql8.4 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162002" comment="mysql8.4-libs is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699004" comment="mysql8.4-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162003" comment="mysql8.4-server is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699006" comment="mysql8.4-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162004" comment="mysql8.4-devel is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699008" comment="mysql8.4-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162005" comment="mysql8.4-test is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699010" comment="mysql8.4-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162006" comment="mysql8.4-common is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699014" comment="mysql8.4-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162007" comment="mysql8.4-errmsg is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699016" comment="mysql8.4-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264162008" comment="mysql8.4-test-data is earlier than 0:8.4.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515699018" comment="mysql8.4-test-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260525" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0525: postgresql16 security update (Moderate)</title>
        <reference ref_id="CVE-2025-12818" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-12818"/>
        <reference ref_id="RHSA-2026:0525" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0525"/>
        <reference ref_id="ALSA-2026:0525" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0525.html"/>
        <description>PostgreSQL is an advanced Object-Relational database management system (DBMS). The base postgresql package contains the client programs that you'll need to access a PostgreSQL DBMS server, as well as HTML documentation for the whole system. These client programs can be located on the same machine as the PostgreSQL server, or on a remote machine that accesses a PostgreSQL server over a network connection. The PostgreSQL server can be found in the postgresql-server sub-package.  

Security Fix(es):  

  * postgresql: libpq undersizes allocations, via integer wraparound (CVE-2025-12818)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-13"/>
          <updated date="2026-01-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414825" id="2414825"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414826" id="2414826"></bugzilla>
          <cve public="20251113" href="https://access.redhat.com/security/cve/CVE-2025-12818" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-12818</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525001" comment="postgresql is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826002" comment="postgresql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525002" comment="postgresql-contrib is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826004" comment="postgresql-contrib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525003" comment="postgresql-docs is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826006" comment="postgresql-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525004" comment="postgresql-plperl is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826008" comment="postgresql-plperl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525005" comment="postgresql-plpython3 is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826010" comment="postgresql-plpython3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525006" comment="postgresql-pltcl is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826012" comment="postgresql-pltcl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525007" comment="postgresql-private-devel is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826014" comment="postgresql-private-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525008" comment="postgresql-private-libs is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826016" comment="postgresql-private-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525009" comment="postgresql-server is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826018" comment="postgresql-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525010" comment="postgresql-server-devel is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826020" comment="postgresql-server-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525011" comment="postgresql-static is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826022" comment="postgresql-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525012" comment="postgresql-test is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826024" comment="postgresql-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525013" comment="postgresql-upgrade is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826026" comment="postgresql-upgrade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525014" comment="postgresql-upgrade-devel is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826028" comment="postgresql-upgrade-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260525015" comment="postgresql-test-rpm-macros is earlier than 0:16.11-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826030" comment="postgresql-test-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260606" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0606: vsftpd security update (Moderate)</title>
        <reference ref_id="CVE-2025-14242" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14242"/>
        <reference ref_id="RHSA-2026:0606" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0606"/>
        <reference ref_id="ALSA-2026:0606" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0606.html"/>
        <description>The vsftpd packages include a Very Secure File Transfer Protocol (FTP) daemon, which is used to serve files over a network.  

Security Fix(es):  

  * vsftpd: vsftpd: Denial of service via integer overflow in ls command parameter parsing (CVE-2025-14242)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-14"/>
          <updated date="2026-01-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2419826" id="2419826"></bugzilla>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2025-14242" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-14242</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20260606001" comment="vsftpd is earlier than 0:3.0.5-10.el10_1.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20260606002" comment="vsftpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260668" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0668: net-snmp security update (Important)</title>
        <reference ref_id="CVE-2025-68615" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68615"/>
        <reference ref_id="RHSA-2026:0668" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0668"/>
        <reference ref_id="ALSA-2026:0668" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0668.html"/>
        <description>The net-snmp packages provide various libraries and tools for the Simple Network Management Protocol (SNMP), including an SNMP library, an extensible agent, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl Management Information Base (MIB) browser.  

Security Fix(es):  

  * net-snmp: buffer overflow via a specially crafted packet can cause a crash in snmptrapd (CVE-2025-68615)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-15"/>
          <updated date="2026-01-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2424618" id="2424618"></bugzilla>
          <cve public="20251222" href="https://access.redhat.com/security/cve/CVE-2025-68615" impact="Important" cwe="CWE-119" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68615</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668001" comment="net-snmp is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668002" comment="net-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668003" comment="net-snmp-agent-libs is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668004" comment="net-snmp-agent-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668005" comment="net-snmp-devel is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668006" comment="net-snmp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668007" comment="net-snmp-libs is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668008" comment="net-snmp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668009" comment="net-snmp-perl is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668010" comment="net-snmp-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668011" comment="net-snmp-perl-module is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668012" comment="net-snmp-perl-module is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668013" comment="net-snmp-utils is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668014" comment="net-snmp-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668015" comment="python3-net-snmp is earlier than 1:5.9.4-15.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260668016" comment="python3-net-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260128" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0128: poppler security update (Moderate)</title>
        <reference ref_id="CVE-2025-32365" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-32365"/>
        <reference ref_id="RHSA-2026:0128" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0128"/>
        <reference ref_id="ALSA-2026:0128" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0128.html"/>
        <description>Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.  

Security Fix(es):  

  * poppler: Out-of-Bounds Read in Poppler (CVE-2025-32365)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-06"/>
          <updated date="2026-01-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2357656" id="2357656"></bugzilla>
          <cve public="20250405" href="https://access.redhat.com/security/cve/CVE-2025-32365" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L">CVE-2025-32365</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128001" comment="poppler is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128002" comment="poppler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128003" comment="poppler-cpp is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128004" comment="poppler-cpp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128005" comment="poppler-glib is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128006" comment="poppler-glib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128007" comment="poppler-qt6 is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128008" comment="poppler-qt6 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128009" comment="poppler-utils is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128010" comment="poppler-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128011" comment="poppler-cpp-devel is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128012" comment="poppler-cpp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128013" comment="poppler-devel is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128014" comment="poppler-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128015" comment="poppler-glib-devel is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128016" comment="poppler-glib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128017" comment="poppler-qt6-devel is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128018" comment="poppler-qt6-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128019" comment="poppler-glib-doc is earlier than 0:24.02.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128020" comment="poppler-glib-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260594" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0594: libpq security update (Moderate)</title>
        <reference ref_id="CVE-2025-12818" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-12818"/>
        <reference ref_id="RHSA-2026:0594" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0594"/>
        <reference ref_id="ALSA-2026:0594" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0594.html"/>
        <description>The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers.   

Security Fix(es):  

  * postgresql: libpq undersizes allocations, via integer wraparound (CVE-2025-12818)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-14"/>
          <updated date="2026-01-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414826" id="2414826"></bugzilla>
          <cve public="20251113" href="https://access.redhat.com/security/cve/CVE-2025-12818" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-12818</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260594001" comment="libpq is earlier than 0:16.11-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260594002" comment="libpq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260594003" comment="libpq-devel is earlier than 0:16.11-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260594004" comment="libpq-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260453" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0453: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-39806" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39806"/>
        <reference ref_id="CVE-2025-39840" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39840"/>
        <reference ref_id="CVE-2025-39843" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39843"/>
        <reference ref_id="CVE-2025-39905" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39905"/>
        <reference ref_id="CVE-2025-39966" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39966"/>
        <reference ref_id="CVE-2025-40176" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40176"/>
        <reference ref_id="CVE-2025-40240" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40240"/>
        <reference ref_id="CVE-2025-40277" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40277"/>
        <reference ref_id="CVE-2025-68287" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68287"/>
        <reference ref_id="RHSA-2026:0453" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0453"/>
        <reference ref_id="ALSA-2026:0453" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0453.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: HID: multitouch: fix slab out-of-bounds access in mt_report_fixup() (CVE-2025-39806)
  * kernel: audit: fix out-of-bounds read in audit_compare_dname_path() (CVE-2025-39840)
  * kernel: mm: slub: avoid wake up kswapd in set_track_prepare (CVE-2025-39843)
  * kernel: net: phylink: add lock for serializing concurrent pl-&gt;phydev writes with resolver (CVE-2025-39905)
  * kernel: iommufd: Fix race during abort for file descriptors (CVE-2025-39966)
  * kernel: tls: wait for pending async decryptions if tls_strp_msg_hold fails (CVE-2025-40176)
  * kernel: sctp: avoid NULL dereference when chunk data buffer is missing (CVE-2025-40240)
  * kernel: drm/vmwgfx: Validate command header size against SVGA_CMD_MAX_DATASIZE (CVE-2025-40277)
  * kernel: usb: dwc3: Fix race condition between concurrent dwc3_remove_requests() call paths (CVE-2025-68287)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-12"/>
          <updated date="2026-01-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2395807" id="2395807"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2396936" id="2396936"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2396941" id="2396941"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2400611" id="2400611"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2404107" id="2404107"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414524" id="2414524"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418832" id="2418832"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419954" id="2419954"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2422788" id="2422788"></bugzilla>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-39806" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-39806</cve>
          <cve public="20250919" href="https://access.redhat.com/security/cve/CVE-2025-39840" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39840</cve>
          <cve public="20250919" href="https://access.redhat.com/security/cve/CVE-2025-39843" impact="Moderate" cwe="CWE-833" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-39843</cve>
          <cve public="20251001" href="https://access.redhat.com/security/cve/CVE-2025-39905" impact="Moderate" cwe="CWE-664" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-39905</cve>
          <cve public="20251015" href="https://access.redhat.com/security/cve/CVE-2025-39966" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39966</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40176" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-40176</cve>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40240" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-40240</cve>
          <cve public="20251206" href="https://access.redhat.com/security/cve/CVE-2025-40277" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40277</cve>
          <cve public="20251216" href="https://access.redhat.com/security/cve/CVE-2025-68287" impact="Important" cwe="CWE-364" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68287</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453001" comment="kernel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453002" comment="kernel-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453003" comment="kernel-debug is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453004" comment="kernel-debug-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453011" comment="kernel-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453013" comment="kernel-headers is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453014" comment="kernel-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453015" comment="kernel-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453018" comment="kernel-rt is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453019" comment="kernel-rt-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453030" comment="kernel-tools is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453034" comment="perf is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453035" comment="python3-perf is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453036" comment="rtla is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453037" comment="rv is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453045" comment="kernel-64k is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453046" comment="kernel-64k-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453073" comment="libperf is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260453075" comment="kernel-doc is earlier than 0:6.12.0-124.27.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260436" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0436: buildah security update (Important)</title>
        <reference ref_id="CVE-2025-47913" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47913"/>
        <reference ref_id="RHSA-2026:0436" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0436"/>
        <reference ref_id="ALSA-2026:0436" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0436.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: SSH client panic due to unexpected SSH_AGENT_SUCCESS (CVE-2025-47913)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-12"/>
          <updated date="2026-01-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414943" id="2414943"></bugzilla>
          <cve public="20251113" href="https://access.redhat.com/security/cve/CVE-2025-47913" impact="Important" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-47913</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260436001" comment="buildah is earlier than 2:1.41.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260436002" comment="buildah-tests is earlier than 2:1.41.8-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260136" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0136: mariadb10.11 security update (Important)</title>
        <reference ref_id="CVE-2023-52969" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2023-52969"/>
        <reference ref_id="CVE-2023-52970" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2023-52970"/>
        <reference ref_id="CVE-2023-52971" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2023-52971"/>
        <reference ref_id="CVE-2025-13699" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13699"/>
        <reference ref_id="CVE-2025-21490" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21490"/>
        <reference ref_id="CVE-2025-30693" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30693"/>
        <reference ref_id="CVE-2025-30722" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-30722"/>
        <reference ref_id="RHSA-2026:0136" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0136"/>
        <reference ref_id="ALSA-2026:0136" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0136.html"/>
        <description>MariaDB is a community developed fork from MySQL - a multi-user, multi-threaded SQL database server. It is a client/server implementation consisting of a server daemon (mariadbd) and many different client programs and libraries. The base package contains the standard MariaDB/MySQL client programs and utilities.  

Security Fix(es):  

  * mysql: High Privilege Denial of Service Vulnerability in MySQL Server (CVE-2025-21490)
  * mariadb: MariaDB Server Crash Due to Empty Backtrace Log (CVE-2023-52969)
  * mariadb: MariaDB Server Crash (CVE-2023-52971)
  * mariadb: MariaDB Server Crash via Item_direct_view_ref (CVE-2023-52970)
  * mysql: mysqldump unspecified vulnerability (CPU Apr 2025) (CVE-2025-30722)
  * mysql: InnoDB unspecified vulnerability (CPU Apr 2025) (CVE-2025-30693)
  * mariadb: MariaDB: mariadb-dump utility vulnerable to remote code execution via improper path validation (CVE-2025-13699)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-06"/>
          <updated date="2026-01-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2339221" id="2339221"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350916" id="2350916"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350917" id="2350917"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350918" id="2350918"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359885" id="2359885"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2359963" id="2359963"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2417693" id="2417693"></bugzilla>
          <cve public="20250308" href="https://access.redhat.com/security/cve/CVE-2023-52969" impact="Moderate" cwe="CWE-1038" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2023-52969</cve>
          <cve public="20250308" href="https://access.redhat.com/security/cve/CVE-2023-52970" impact="Moderate" cwe="CWE-1038" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2023-52970</cve>
          <cve public="20250308" href="https://access.redhat.com/security/cve/CVE-2023-52971" impact="Moderate" cwe="CWE-1038" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2023-52971</cve>
          <cve public="20251127" href="https://access.redhat.com/security/cve/CVE-2025-13699" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-13699</cve>
          <cve public="20250121" href="https://access.redhat.com/security/cve/CVE-2025-21490" impact="Moderate" cwe="CWE-404" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21490</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30693" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H">CVE-2025-30693</cve>
          <cve public="20250415" href="https://access.redhat.com/security/cve/CVE-2025-30722" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N">CVE-2025-30722</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136001" comment="mariadb is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136002" comment="mariadb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136003" comment="mariadb-backup is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136004" comment="mariadb-backup is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136005" comment="mariadb-client-utils is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136006" comment="mariadb-client-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136007" comment="mariadb-devel is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136008" comment="mariadb-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136009" comment="mariadb-embedded is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136010" comment="mariadb-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136011" comment="mariadb-embedded-devel is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136012" comment="mariadb-embedded-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136013" comment="mariadb-gssapi-server is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136014" comment="mariadb-gssapi-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136015" comment="mariadb-oqgraph-engine is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136016" comment="mariadb-oqgraph-engine is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136017" comment="mariadb-pam is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136018" comment="mariadb-pam is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136019" comment="mariadb-server is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136020" comment="mariadb-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136021" comment="mariadb-server-galera is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136022" comment="mariadb-server-galera is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136023" comment="mariadb-server-utils is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136024" comment="mariadb-server-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136025" comment="mariadb-test is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136026" comment="mariadb-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136027" comment="mariadb-common is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136028" comment="mariadb-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136029" comment="mariadb-errmsg is earlier than 3:10.11.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136030" comment="mariadb-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260545" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0545: podman security update (Important)</title>
        <reference ref_id="CVE-2025-47913" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-47913"/>
        <reference ref_id="RHSA-2026:0545" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0545"/>
        <reference ref_id="ALSA-2026:0545" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0545.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: SSH client panic due to unexpected SSH_AGENT_SUCCESS (CVE-2025-47913)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-14"/>
          <updated date="2026-01-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414943" id="2414943"></bugzilla>
          <cve public="20251113" href="https://access.redhat.com/security/cve/CVE-2025-47913" impact="Important" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-47913</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260545001" comment="podman is earlier than 7:5.6.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260545002" comment="podman-remote is earlier than 7:5.6.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260545003" comment="podman-tests is earlier than 7:5.6.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260545004" comment="podman-docker is earlier than 7:5.6.0-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261715" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1715: golang-github-openprinting-ipp-usb security update (Important)</title>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="RHSA-2026:1715" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1715"/>
        <reference ref_id="ALSA-2026:1715" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1715.html"/>
        <description>HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables  
driverless support for USB devices capable of using IPP-over-USB protocol.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-02"/>
          <updated date="2026-02-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261715001" comment="ipp-usb is earlier than 0:0.9.27-4.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259156002" comment="ipp-usb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260933" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0933: java-25-openjdk security update (Important)</title>
        <reference ref_id="CVE-2025-64720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-64720"/>
        <reference ref_id="CVE-2025-65018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-65018"/>
        <reference ref_id="CVE-2026-21925" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21925"/>
        <reference ref_id="CVE-2026-21933" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21933"/>
        <reference ref_id="CVE-2026-21945" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21945"/>
        <reference ref_id="RHSA-2026:0933" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0933"/>
        <reference ref_id="ALSA-2026:0933" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0933.html"/>
        <description>The OpenJDK 25 packages provide the OpenJDK 25 Java Runtime Environment and the OpenJDK 25 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Improve JMX connections (CVE-2026-21925)
  * JDK: Improve HttpServer Request handling (CVE-2026-21933)
  * JDK: Enhance Certificate Checking (CVE-2026-21945)
  * libpng: LIBPNG buffer overflow (CVE-2025-64720)
  * libpng: LIBPNG heap buffer overflow (CVE-2025-65018)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-26"/>
          <updated date="2026-01-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-64720" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2025-64720</cve>
          <cve public="20251124" href="https://access.redhat.com/security/cve/CVE-2025-65018" impact="Important" cwe="(CWE-122|CWE-787)" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H">CVE-2025-65018</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21925" impact="Moderate" cwe="CWE-322" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-21925</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21933" impact="Moderate" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-21933</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21945" impact="Important" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21945</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933001" comment="java-25-openjdk is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933002" comment="java-25-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933003" comment="java-25-openjdk-crypto-adapter is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933004" comment="java-25-openjdk-crypto-adapter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933005" comment="java-25-openjdk-demo is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933006" comment="java-25-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933007" comment="java-25-openjdk-devel is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933008" comment="java-25-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933009" comment="java-25-openjdk-headless is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933010" comment="java-25-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933011" comment="java-25-openjdk-javadoc is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933012" comment="java-25-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933013" comment="java-25-openjdk-javadoc-zip is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933014" comment="java-25-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933015" comment="java-25-openjdk-jmods is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933016" comment="java-25-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933017" comment="java-25-openjdk-src is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933018" comment="java-25-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933019" comment="java-25-openjdk-static-libs is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933020" comment="java-25-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933021" comment="java-25-openjdk-crypto-adapter-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933022" comment="java-25-openjdk-crypto-adapter-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933023" comment="java-25-openjdk-crypto-adapter-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933024" comment="java-25-openjdk-crypto-adapter-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933025" comment="java-25-openjdk-demo-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933026" comment="java-25-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933027" comment="java-25-openjdk-demo-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933028" comment="java-25-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933029" comment="java-25-openjdk-devel-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933030" comment="java-25-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933031" comment="java-25-openjdk-devel-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933032" comment="java-25-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933033" comment="java-25-openjdk-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933034" comment="java-25-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933035" comment="java-25-openjdk-headless-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933036" comment="java-25-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933037" comment="java-25-openjdk-headless-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933038" comment="java-25-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933039" comment="java-25-openjdk-jmods-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933040" comment="java-25-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933041" comment="java-25-openjdk-jmods-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933042" comment="java-25-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933043" comment="java-25-openjdk-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933044" comment="java-25-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933045" comment="java-25-openjdk-src-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933046" comment="java-25-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933047" comment="java-25-openjdk-src-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933048" comment="java-25-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933049" comment="java-25-openjdk-static-libs-fastdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933050" comment="java-25-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933051" comment="java-25-openjdk-static-libs-slowdebug is earlier than 1:25.0.2.0.10-1.el10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933052" comment="java-25-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261696" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1696: util-linux security update (Moderate)</title>
        <reference ref_id="CVE-2025-14104" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14104"/>
        <reference ref_id="RHSA-2026:1696" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1696"/>
        <reference ref_id="ALSA-2026:1696" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1696.html"/>
        <description>The util-linux packages contain a large variety of low-level system utilities that are necessary for a Linux system to function. Among others, these include the fdisk configuration tool and the login program.  

Security Fix(es):  

  * util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames (CVE-2025-14104)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-02"/>
          <updated date="2026-02-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2419369" id="2419369"></bugzilla>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-14104" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H">CVE-2025-14104</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696001" comment="util-linux-core is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696002" comment="util-linux-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696003" comment="uuidd is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696004" comment="uuidd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696005" comment="libblkid is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696006" comment="libblkid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696007" comment="libblkid-devel is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696008" comment="libblkid-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696009" comment="libfdisk is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696010" comment="libfdisk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696011" comment="libmount is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696012" comment="libmount is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696013" comment="libmount-devel is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696014" comment="libmount-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696015" comment="libsmartcols is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696016" comment="libsmartcols is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696017" comment="libuuid is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696018" comment="libuuid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696019" comment="libuuid-devel is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696020" comment="libuuid-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696021" comment="python3-libmount is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696022" comment="python3-libmount is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696023" comment="util-linux is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696024" comment="util-linux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696025" comment="libfdisk-devel is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696026" comment="libfdisk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696027" comment="libsmartcols-devel is earlier than 0:2.40.2-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261696028" comment="libsmartcols-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261828" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1828: python3.12 security update (Moderate)</title>
        <reference ref_id="CVE-2025-12084" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-12084"/>
        <reference ref_id="CVE-2025-13836" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13836"/>
        <reference ref_id="RHSA-2026:1828" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1828"/>
        <reference ref_id="ALSA-2026:1828" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1828.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * cpython: Excessive read buffering DoS in http.client (CVE-2025-13836)
  * cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service (CVE-2025-12084)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418078" id="2418078"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418655" id="2418655"></bugzilla>
          <cve public="20251203" href="https://access.redhat.com/security/cve/CVE-2025-12084" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-12084</cve>
          <cve public="20251201" href="https://access.redhat.com/security/cve/CVE-2025-13836" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H">CVE-2025-13836</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828001" comment="python3 is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828002" comment="python3-devel is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828003" comment="python3-libs is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828004" comment="python3-tkinter is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828005" comment="python3-debug is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828006" comment="python3-idle is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828007" comment="python3-test is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261828008" comment="python-unversioned-command is earlier than 0:3.12.12-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261472" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1472: openssl security update (Important)</title>
        <reference ref_id="CVE-2025-11187" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11187"/>
        <reference ref_id="CVE-2025-15467" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15467"/>
        <reference ref_id="CVE-2025-15468" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15468"/>
        <reference ref_id="CVE-2025-15469" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15469"/>
        <reference ref_id="CVE-2025-66199" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-66199"/>
        <reference ref_id="CVE-2025-68160" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68160"/>
        <reference ref_id="CVE-2025-69418" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-69418"/>
        <reference ref_id="CVE-2025-69419" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-69419"/>
        <reference ref_id="CVE-2025-69420" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-69420"/>
        <reference ref_id="CVE-2025-69421" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-69421"/>
        <reference ref_id="CVE-2026-22795" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22795"/>
        <reference ref_id="CVE-2026-22796" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22796"/>
        <reference ref_id="RHSA-2026:1472" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1472"/>
        <reference ref_id="ALSA-2026:1472" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1472.html"/>
        <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.  

Security Fix(es):  

  * openssl: OpenSSL: Arbitrary code execution or denial of service through crafted PKCS#12 file (CVE-2025-11187)
  * openssl: OpenSSL: Remote code execution or Denial of Service via oversized Initialization Vector in CMS parsing (CVE-2025-15467)
  * openssl: OpenSSL: Denial of Service via NULL pointer dereference in QUIC protocol handling (CVE-2025-15468)
  * openssl: OpenSSL: Data integrity bypass in `openssl dgst` command due to silent truncation (CVE-2025-15469)
  * openssl: OpenSSL: Denial of Service due to excessive memory allocation in TLS 1.3 certificate compression (CVE-2025-66199)
  * openssl: OpenSSL: Denial of Service due to out-of-bounds write in BIO filter (CVE-2025-68160)
  * openssl: OpenSSL: Information disclosure and data tampering via specific low-level OCB encryption/decryption calls (CVE-2025-69418)
  * openssl: OpenSSL: Arbitrary code execution due to out-of-bounds write in PKCS#12 processing (CVE-2025-69419)
  * openssl: OpenSSL: Denial of Service via malformed PKCS#12 file processing (CVE-2025-69421)
  * openssl: OpenSSL: Denial of Service via malformed TimeStamp Response (CVE-2025-69420)
  * openssl: OpenSSL: Denial of Service due to type confusion in PKCS#12 file processing (CVE-2026-22795)
  * openssl: OpenSSL: Denial of Service via type confusion in PKCS#7 signature verification (CVE-2026-22796)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-28"/>
          <updated date="2026-01-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2430375" id="2430375"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430376" id="2430376"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430377" id="2430377"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430378" id="2430378"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430379" id="2430379"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430380" id="2430380"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430381" id="2430381"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430386" id="2430386"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430387" id="2430387"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430388" id="2430388"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430389" id="2430389"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430390" id="2430390"></bugzilla>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-11187" impact="Moderate" cwe="CWE-233" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H">CVE-2025-11187</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-15467" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2025-15467</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-15468" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-15468</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-15469" impact="Low" cwe="CWE-1284" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N">CVE-2025-15469</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-66199" impact="Low" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-66199</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-68160" impact="Low" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-68160</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-69418" impact="Low" cwe="CWE-325" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2025-69418</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-69419" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-69419</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-69420" impact="Low" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-69420</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2025-69421" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-69421</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2026-22795" impact="Low" cwe="CWE-843" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-22795</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2026-22796" impact="Low" cwe="CWE-1287" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-22796</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261472001" comment="openssl is earlier than 1:3.5.1-7.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248002" comment="openssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261472002" comment="openssl-devel is earlier than 1:3.5.1-7.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248004" comment="openssl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261472003" comment="openssl-libs is earlier than 1:3.5.1-7.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248006" comment="openssl-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261472004" comment="openssl-perl is earlier than 1:3.5.1-7.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248008" comment="openssl-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20260697" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:0697: gnupg2 security update (Important)</title>
        <reference ref_id="CVE-2025-68973" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68973"/>
        <reference ref_id="RHSA-2026:0697" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:0697"/>
        <reference ref_id="ALSA-2026:0697" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-0697.html"/>
        <description>The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and creating digital signatures, compliant with OpenPGP and S/MIME standards.  

Security Fix(es):  

  * GnuPG: GnuPG: Information disclosure and potential arbitrary code execution via out-of-bounds write (CVE-2025-68973)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-15"/>
          <updated date="2026-01-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2425966" id="2425966"></bugzilla>
          <cve public="20251228" href="https://access.redhat.com/security/cve/CVE-2025-68973" impact="Important" cwe="CWE-675" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N">CVE-2025-68973</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260697001" comment="gnupg2 is earlier than 0:2.4.5-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260697002" comment="gnupg2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260697003" comment="gnupg2-smime is earlier than 0:2.4.5-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260697004" comment="gnupg2-smime is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261825" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1825: curl security update (Moderate)</title>
        <reference ref_id="CVE-2025-9086" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9086"/>
        <reference ref_id="RHSA-2026:1825" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1825"/>
        <reference ref_id="ALSA-2026:1825" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1825.html"/>
        <description>The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP.  

Security Fix(es):  

  * curl: libcurl: Curl out of bounds read for cookie path (CVE-2025-9086)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2394750" id="2394750"></bugzilla>
          <cve public="20250912" href="https://access.redhat.com/security/cve/CVE-2025-9086" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-9086</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825001" comment="libcurl-devel is earlier than 0:8.12.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825002" comment="libcurl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825003" comment="libcurl-minimal is earlier than 0:8.12.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825004" comment="libcurl-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825005" comment="curl is earlier than 0:8.12.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825006" comment="curl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825007" comment="libcurl is earlier than 0:8.12.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261825008" comment="libcurl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261902" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1902: python-wheel security update (Important)</title>
        <reference ref_id="CVE-2026-24049" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24049"/>
        <reference ref_id="RHSA-2026:1902" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1902"/>
        <reference ref_id="ALSA-2026:1902" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1902.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking (CVE-2026-24049)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-04"/>
          <updated date="2026-02-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431959" id="2431959"></bugzilla>
          <cve public="20260122" href="https://access.redhat.com/security/cve/CVE-2026-24049" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H">CVE-2026-24049</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261902001" comment="python3-wheel is earlier than 1:0.41.2-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261902002" comment="python3-wheel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261902003" comment="python3-wheel-wheel is earlier than 1:0.41.2-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261902004" comment="python3-wheel-wheel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264174" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4174: opentelemetry-collector security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:4174" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4174"/>
        <reference ref_id="ALSA-2026:4174" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4174.html"/>
        <description>Collector with the supported components for a AlmaLinux build of OpenTelemetry  

Security Fix(es):  

  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-10"/>
          <updated date="2026-03-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20264174001" comment="opentelemetry-collector is earlier than 0:0.144.0-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850002" comment="opentelemetry-collector is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261690" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1690: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-37819" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37819"/>
        <reference ref_id="CVE-2025-38022" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38022"/>
        <reference ref_id="CVE-2025-38349" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38349"/>
        <reference ref_id="CVE-2025-38453" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38453"/>
        <reference ref_id="CVE-2025-38568" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38568"/>
        <reference ref_id="CVE-2025-38731" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38731"/>
        <reference ref_id="CVE-2025-40135" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40135"/>
        <reference ref_id="CVE-2025-40154" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40154"/>
        <reference ref_id="CVE-2025-40158" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40158"/>
        <reference ref_id="CVE-2025-40170" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40170"/>
        <reference ref_id="CVE-2025-40248" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40248"/>
        <reference ref_id="CVE-2025-40251" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40251"/>
        <reference ref_id="CVE-2025-40258" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40258"/>
        <reference ref_id="CVE-2025-40271" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40271"/>
        <reference ref_id="CVE-2025-40294" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40294"/>
        <reference ref_id="CVE-2025-40301" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40301"/>
        <reference ref_id="CVE-2025-40318" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40318"/>
        <reference ref_id="CVE-2025-68301" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68301"/>
        <reference ref_id="CVE-2025-68305" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68305"/>
        <reference ref_id="RHSA-2026:1690" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1690"/>
        <reference ref_id="ALSA-2026:1690" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1690.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: irqchip/gic-v2m use-after-free vulnerability (CVE-2025-37819)
  * kernel: RDMA/core: Fix "KASAN: slab-use-after-free Read in ib_register_device" problem (CVE-2025-38022)
  * kernel: Linux kernel use-after-free in eventpoll (CVE-2025-38349)
  * kernel: io_uring/msg_ring: ensure io_kiocb freeing is deferred for RCU (CVE-2025-38453)
  * kernel: net/sched: mqprio: fix stack out-of-bounds write in tc entry parsing (CVE-2025-38568)
  * kernel: drm/xe: Fix vm_bind_ioctl double free bug (CVE-2025-38731)
  * kernel: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping (CVE-2025-40154)
  * kernel: net: use dst_dev_rcu() in sk_setup_caps() (CVE-2025-40170)
  * kernel: ipv6: use RCU in ip6_xmit() (CVE-2025-40135)
  * kernel: ipv6: use RCU in ip6_output() (CVE-2025-40158)
  * kernel: Linux kernel: vsock vulnerability may lead to memory corruption (CVE-2025-40248)
  * kernel: mptcp: fix race condition in mptcp_schedule_work() (CVE-2025-40258)
  * kernel: devlink: rate: Unset parent pointer in devl_rate_nodes_destroy (CVE-2025-40251)
  * kernel: Linux kernel: Use-after-free in proc_readdir_de() can lead to privilege escalation or denial of service. (CVE-2025-40271)
  * kernel: Linux kernel: Out-of-bounds write in Bluetooth MGMT can lead to information disclosure and denial of service (CVE-2025-40294)
  * kernel: Linux kernel: Information disclosure and denial of service in Bluetooth HCI event handling (CVE-2025-40301)
  * kernel: Bluetooth: hci_sync: fix race in hci_cmd_sync_dequeue_once (CVE-2025-40318)
  * kernel: net: atlantic: fix fragment overflow handling in RX path (CVE-2025-68301)
  * kernel: Bluetooth: hci_sock: Prevent race in socket write iter and sock bind (CVE-2025-68305)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-02"/>
          <updated date="2026-02-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2365032" id="2365032"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2373326" id="2373326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2381870" id="2381870"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383516" id="2383516"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2389507" id="2389507"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393488" id="2393488"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414494" id="2414494"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414506" id="2414506"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414521" id="2414521"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414523" id="2414523"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418872" id="2418872"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418876" id="2418876"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418892" id="2418892"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419837" id="2419837"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419891" id="2419891"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419896" id="2419896"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419920" id="2419920"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2422836" id="2422836"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2422840" id="2422840"></bugzilla>
          <cve public="20250508" href="https://access.redhat.com/security/cve/CVE-2025-37819" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-37819</cve>
          <cve public="20250618" href="https://access.redhat.com/security/cve/CVE-2025-38022" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-38022</cve>
          <cve public="20250718" href="https://access.redhat.com/security/cve/CVE-2025-38349" impact="Moderate" cwe="CWE-366" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38349</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38453" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38453</cve>
          <cve public="20250819" href="https://access.redhat.com/security/cve/CVE-2025-38568" impact="Moderate" cwe="CWE-129" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38568</cve>
          <cve public="20250905" href="https://access.redhat.com/security/cve/CVE-2025-38731" impact="Moderate" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38731</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40135" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40135</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40154" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40154</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40158" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40158</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40170" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40170</cve>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40248" impact="Important" cwe="CWE-364" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40248</cve>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40251" impact="Moderate" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-40251</cve>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40258" impact="Moderate" cwe="CWE-362" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40258</cve>
          <cve public="20251206" href="https://access.redhat.com/security/cve/CVE-2025-40271" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40271</cve>
          <cve public="20251208" href="https://access.redhat.com/security/cve/CVE-2025-40294" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-40294</cve>
          <cve public="20251208" href="https://access.redhat.com/security/cve/CVE-2025-40301" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-40301</cve>
          <cve public="20251208" href="https://access.redhat.com/security/cve/CVE-2025-40318" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40318</cve>
          <cve public="20251216" href="https://access.redhat.com/security/cve/CVE-2025-68301" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68301</cve>
          <cve public="20251216" href="https://access.redhat.com/security/cve/CVE-2025-68305" impact="Moderate" cwe="CWE-366" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68305</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690001" comment="kernel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690002" comment="kernel-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690003" comment="kernel-debug is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690004" comment="kernel-debug-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690010" comment="kernel-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690011" comment="kernel-devel-matched is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690012" comment="kernel-headers is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690013" comment="kernel-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690014" comment="kernel-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690015" comment="kernel-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690016" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690017" comment="kernel-tools is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690018" comment="kernel-tools-libs is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690019" comment="perf is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690020" comment="python3-perf is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690021" comment="rtla is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690022" comment="rv is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690023" comment="kernel-cross-headers is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690024" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690025" comment="libperf is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690026" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690027" comment="kernel-rt is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690028" comment="kernel-rt-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690029" comment="kernel-rt-debug is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690030" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690031" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690032" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690033" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690034" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690035" comment="kernel-rt-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690036" comment="kernel-rt-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690037" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690038" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690039" comment="kernel-uki-virt is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690040" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690041" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690042" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690043" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690044" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690045" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690046" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690047" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690048" comment="kernel-64k is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690049" comment="kernel-64k-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690050" comment="kernel-64k-debug is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690051" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690052" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690053" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690054" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690055" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690056" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690057" comment="kernel-64k-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690058" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690059" comment="kernel-64k-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690060" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690061" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690062" comment="kernel-rt-64k is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690063" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690064" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690065" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690066" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690067" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690068" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690069" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690070" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690071" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690072" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690073" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261690075" comment="kernel-doc is earlier than 0:6.12.0-124.31.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261178" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1178: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38383" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38383"/>
        <reference ref_id="RHSA-2026:1178" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1178"/>
        <reference ref_id="ALSA-2026:1178" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1178.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Denial of Service due to data race in vmalloc's show_numa_info function (CVE-2025-38383)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-26"/>
          <updated date="2026-01-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2383425" id="2383425"></bugzilla>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38383" impact="Moderate" cwe="CWE-820" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38383</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178001" comment="kernel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178002" comment="kernel-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178003" comment="kernel-debug is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178004" comment="kernel-debug-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178011" comment="kernel-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178013" comment="kernel-headers is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178014" comment="kernel-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178015" comment="kernel-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178018" comment="kernel-rt is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178019" comment="kernel-rt-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178030" comment="kernel-tools is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178034" comment="perf is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178035" comment="python3-perf is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178036" comment="rtla is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178037" comment="rv is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178045" comment="kernel-64k is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178046" comment="kernel-64k-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178073" comment="libperf is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261178075" comment="kernel-doc is earlier than 0:6.12.0-124.29.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261628" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1628: php security update (Important)</title>
        <reference ref_id="CVE-2025-14177" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14177"/>
        <reference ref_id="CVE-2025-14178" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14178"/>
        <reference ref_id="CVE-2025-14180" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14180"/>
        <reference ref_id="RHSA-2026:1628" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1628"/>
        <reference ref_id="ALSA-2026:1628" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1628.html"/>
        <description>PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.  

Security Fix(es):  

  * php: heap-based buffer overflow in array_merge() (CVE-2025-14178)
  * php: PHP: Information disclosure via getimagesize() function when reading multi-chunk images (CVE-2025-14177)
  * php: PHP: Denial of Service via invalid character sequence in PDO PostgreSQL prepared statement (CVE-2025-14180)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-02"/>
          <updated date="2026-02-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2425625" id="2425625"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2425626" id="2425626"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2425627" id="2425627"></bugzilla>
          <cve public="20251227" href="https://access.redhat.com/security/cve/CVE-2025-14177" impact="Low" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2025-14177</cve>
          <cve public="20251227" href="https://access.redhat.com/security/cve/CVE-2025-14178" impact="Moderate" cwe="(CWE-190|CWE-787)" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2025-14178</cve>
          <cve public="20251227" href="https://access.redhat.com/security/cve/CVE-2025-14180" impact="Important" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-14180</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628001" comment="php-dba is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489010" comment="php-dba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628002" comment="php-dbg is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489012" comment="php-dbg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628003" comment="php-devel is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489014" comment="php-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628004" comment="php-embedded is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489016" comment="php-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628005" comment="php-enchant is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489018" comment="php-enchant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628006" comment="php-ffi is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489020" comment="php-ffi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628007" comment="php-fpm is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489022" comment="php-fpm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628008" comment="php-gd is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489024" comment="php-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628009" comment="php-gmp is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489026" comment="php-gmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628010" comment="php-intl is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489028" comment="php-intl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628011" comment="php-ldap is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489030" comment="php-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628012" comment="php-mbstring is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489032" comment="php-mbstring is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628013" comment="php-mysqlnd is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489034" comment="php-mysqlnd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628014" comment="php-odbc is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489036" comment="php-odbc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628015" comment="php-opcache is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489038" comment="php-opcache is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628016" comment="php-pdo is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489040" comment="php-pdo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628017" comment="php-pgsql is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489042" comment="php-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628018" comment="php-process is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489044" comment="php-process is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628019" comment="php-snmp is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489046" comment="php-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628020" comment="php-soap is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489048" comment="php-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628021" comment="php-xml is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489050" comment="php-xml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628022" comment="php is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489002" comment="php is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628023" comment="php-bcmath is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489004" comment="php-bcmath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628024" comment="php-cli is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489006" comment="php-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261628025" comment="php-common is earlier than 0:8.3.29-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489008" comment="php-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261334" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1334: glibc security update (Moderate)</title>
        <reference ref_id="CVE-2026-0861" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0861"/>
        <reference ref_id="CVE-2026-0915" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0915"/>
        <reference ref_id="RHSA-2026:1334" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1334"/>
        <reference ref_id="ALSA-2026:1334" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1334.html"/>
        <description>The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.  

Security Fix(es):  

  * glibc: Integer overflow in memalign leads to heap corruption (CVE-2026-0861)
  * glibc: glibc: Information disclosure via zero-valued network query (CVE-2026-0915)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-27"/>
          <updated date="2026-01-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2429771" id="2429771"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430201" id="2430201"></bugzilla>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-0861" impact="Low" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-0861</cve>
          <cve public="20260115" href="https://access.redhat.com/security/cve/CVE-2026-0915" impact="Moderate" cwe="CWE-908" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-0915</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334001" comment="glibc is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066002" comment="glibc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334002" comment="glibc-all-langpacks is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066004" comment="glibc-all-langpacks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334003" comment="glibc-common is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066006" comment="glibc-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334004" comment="glibc-devel is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066008" comment="glibc-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334005" comment="glibc-gconv-extra is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066010" comment="glibc-gconv-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334006" comment="glibc-langpack-aa is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066012" comment="glibc-langpack-aa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334007" comment="glibc-langpack-af is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066014" comment="glibc-langpack-af is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334008" comment="glibc-langpack-agr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066016" comment="glibc-langpack-agr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334009" comment="glibc-langpack-ak is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066018" comment="glibc-langpack-ak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334010" comment="glibc-langpack-am is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066020" comment="glibc-langpack-am is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334011" comment="glibc-langpack-an is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066022" comment="glibc-langpack-an is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334012" comment="glibc-langpack-anp is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066024" comment="glibc-langpack-anp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334013" comment="glibc-langpack-ar is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066026" comment="glibc-langpack-ar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334014" comment="glibc-langpack-as is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066028" comment="glibc-langpack-as is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334015" comment="glibc-langpack-ast is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066030" comment="glibc-langpack-ast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334016" comment="glibc-langpack-ayc is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066098" comment="glibc-langpack-ayc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334017" comment="glibc-langpack-az is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066100" comment="glibc-langpack-az is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334018" comment="glibc-langpack-be is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066102" comment="glibc-langpack-be is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334019" comment="glibc-langpack-bem is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066104" comment="glibc-langpack-bem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334020" comment="glibc-langpack-ber is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066106" comment="glibc-langpack-ber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334021" comment="glibc-langpack-bg is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066108" comment="glibc-langpack-bg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334022" comment="glibc-langpack-bhb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066110" comment="glibc-langpack-bhb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334023" comment="glibc-langpack-bho is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066112" comment="glibc-langpack-bho is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334024" comment="glibc-langpack-bi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066114" comment="glibc-langpack-bi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334025" comment="glibc-langpack-bn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066116" comment="glibc-langpack-bn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334026" comment="glibc-langpack-bo is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066118" comment="glibc-langpack-bo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334027" comment="glibc-langpack-br is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066120" comment="glibc-langpack-br is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334028" comment="glibc-langpack-brx is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066122" comment="glibc-langpack-brx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334029" comment="glibc-langpack-bs is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066124" comment="glibc-langpack-bs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334030" comment="glibc-langpack-byn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066126" comment="glibc-langpack-byn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334031" comment="glibc-langpack-ca is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066128" comment="glibc-langpack-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334032" comment="glibc-langpack-ce is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066130" comment="glibc-langpack-ce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334033" comment="glibc-langpack-chr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066132" comment="glibc-langpack-chr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334034" comment="glibc-langpack-ckb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066134" comment="glibc-langpack-ckb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334035" comment="glibc-langpack-cmn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066136" comment="glibc-langpack-cmn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334036" comment="glibc-langpack-crh is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066138" comment="glibc-langpack-crh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334037" comment="glibc-langpack-cs is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066140" comment="glibc-langpack-cs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334038" comment="glibc-langpack-csb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066142" comment="glibc-langpack-csb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334039" comment="glibc-langpack-cv is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066144" comment="glibc-langpack-cv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334040" comment="glibc-langpack-cy is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066146" comment="glibc-langpack-cy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334041" comment="glibc-langpack-da is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066148" comment="glibc-langpack-da is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334042" comment="glibc-langpack-de is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066150" comment="glibc-langpack-de is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334043" comment="glibc-langpack-doi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066152" comment="glibc-langpack-doi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334044" comment="glibc-langpack-dsb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066154" comment="glibc-langpack-dsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334045" comment="glibc-langpack-dv is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066156" comment="glibc-langpack-dv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334046" comment="glibc-langpack-dz is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066158" comment="glibc-langpack-dz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334047" comment="glibc-langpack-el is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066160" comment="glibc-langpack-el is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334048" comment="glibc-langpack-en is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066162" comment="glibc-langpack-en is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334049" comment="glibc-langpack-eo is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066164" comment="glibc-langpack-eo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334050" comment="glibc-langpack-es is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066166" comment="glibc-langpack-es is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334051" comment="glibc-langpack-et is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066168" comment="glibc-langpack-et is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334052" comment="glibc-langpack-eu is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066170" comment="glibc-langpack-eu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334053" comment="glibc-langpack-fa is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066172" comment="glibc-langpack-fa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334054" comment="glibc-langpack-ff is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066174" comment="glibc-langpack-ff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334055" comment="glibc-langpack-fi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066176" comment="glibc-langpack-fi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334056" comment="glibc-langpack-fil is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066178" comment="glibc-langpack-fil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334057" comment="glibc-langpack-fo is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066180" comment="glibc-langpack-fo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334058" comment="glibc-langpack-fr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066182" comment="glibc-langpack-fr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334059" comment="glibc-langpack-fur is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066184" comment="glibc-langpack-fur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334060" comment="glibc-langpack-fy is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066186" comment="glibc-langpack-fy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334061" comment="glibc-langpack-ga is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066188" comment="glibc-langpack-ga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334062" comment="glibc-langpack-gbm is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066190" comment="glibc-langpack-gbm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334063" comment="glibc-langpack-gd is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066192" comment="glibc-langpack-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334064" comment="glibc-langpack-gez is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066194" comment="glibc-langpack-gez is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334065" comment="glibc-langpack-gl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066196" comment="glibc-langpack-gl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334066" comment="glibc-langpack-gu is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066198" comment="glibc-langpack-gu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334067" comment="glibc-langpack-gv is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066200" comment="glibc-langpack-gv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334068" comment="glibc-langpack-ha is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066202" comment="glibc-langpack-ha is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334069" comment="glibc-langpack-hak is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066204" comment="glibc-langpack-hak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334070" comment="glibc-langpack-he is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066206" comment="glibc-langpack-he is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334071" comment="glibc-langpack-hi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066208" comment="glibc-langpack-hi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334072" comment="glibc-langpack-hif is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066210" comment="glibc-langpack-hif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334073" comment="glibc-langpack-hne is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066212" comment="glibc-langpack-hne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334074" comment="glibc-langpack-hr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066214" comment="glibc-langpack-hr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334075" comment="glibc-langpack-hsb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066216" comment="glibc-langpack-hsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334076" comment="glibc-langpack-ht is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066218" comment="glibc-langpack-ht is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334077" comment="glibc-langpack-hu is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066220" comment="glibc-langpack-hu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334078" comment="glibc-langpack-hy is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066222" comment="glibc-langpack-hy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334079" comment="glibc-langpack-ia is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066224" comment="glibc-langpack-ia is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334080" comment="glibc-langpack-id is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066226" comment="glibc-langpack-id is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334081" comment="glibc-langpack-ig is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066228" comment="glibc-langpack-ig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334082" comment="glibc-langpack-ik is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066230" comment="glibc-langpack-ik is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334083" comment="glibc-langpack-is is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066232" comment="glibc-langpack-is is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334084" comment="glibc-langpack-it is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066234" comment="glibc-langpack-it is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334085" comment="glibc-langpack-iu is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066236" comment="glibc-langpack-iu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334086" comment="glibc-langpack-ja is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066238" comment="glibc-langpack-ja is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334087" comment="glibc-langpack-ka is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066240" comment="glibc-langpack-ka is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334088" comment="glibc-langpack-kab is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066242" comment="glibc-langpack-kab is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334089" comment="glibc-langpack-kk is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066244" comment="glibc-langpack-kk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334090" comment="glibc-langpack-kl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066246" comment="glibc-langpack-kl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334091" comment="glibc-langpack-km is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066248" comment="glibc-langpack-km is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334092" comment="glibc-langpack-kn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066250" comment="glibc-langpack-kn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334093" comment="glibc-langpack-ko is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066252" comment="glibc-langpack-ko is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334094" comment="glibc-langpack-kok is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066254" comment="glibc-langpack-kok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334095" comment="glibc-langpack-ks is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066256" comment="glibc-langpack-ks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334096" comment="glibc-langpack-ku is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066258" comment="glibc-langpack-ku is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334097" comment="glibc-langpack-kv is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066260" comment="glibc-langpack-kv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334098" comment="glibc-langpack-kw is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066262" comment="glibc-langpack-kw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334099" comment="glibc-langpack-ky is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066264" comment="glibc-langpack-ky is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334100" comment="glibc-langpack-lb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066266" comment="glibc-langpack-lb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334101" comment="glibc-langpack-lg is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066268" comment="glibc-langpack-lg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334102" comment="glibc-langpack-li is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066270" comment="glibc-langpack-li is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334103" comment="glibc-langpack-lij is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066272" comment="glibc-langpack-lij is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334104" comment="glibc-langpack-ln is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066274" comment="glibc-langpack-ln is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334105" comment="glibc-langpack-lo is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066276" comment="glibc-langpack-lo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334106" comment="glibc-langpack-lt is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066278" comment="glibc-langpack-lt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334107" comment="glibc-langpack-lv is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066280" comment="glibc-langpack-lv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334108" comment="glibc-langpack-lzh is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066282" comment="glibc-langpack-lzh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334109" comment="glibc-langpack-mag is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066284" comment="glibc-langpack-mag is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334110" comment="glibc-langpack-mai is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066286" comment="glibc-langpack-mai is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334111" comment="glibc-langpack-mfe is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066288" comment="glibc-langpack-mfe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334112" comment="glibc-langpack-mg is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066290" comment="glibc-langpack-mg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334113" comment="glibc-langpack-mhr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066292" comment="glibc-langpack-mhr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334114" comment="glibc-langpack-mi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066294" comment="glibc-langpack-mi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334115" comment="glibc-langpack-miq is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066296" comment="glibc-langpack-miq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334116" comment="glibc-langpack-mjw is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066298" comment="glibc-langpack-mjw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334117" comment="glibc-langpack-mk is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066300" comment="glibc-langpack-mk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334118" comment="glibc-langpack-ml is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066302" comment="glibc-langpack-ml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334119" comment="glibc-langpack-mn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066304" comment="glibc-langpack-mn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334120" comment="glibc-langpack-mni is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066306" comment="glibc-langpack-mni is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334121" comment="glibc-langpack-mnw is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066308" comment="glibc-langpack-mnw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334122" comment="glibc-langpack-mr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066310" comment="glibc-langpack-mr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334123" comment="glibc-langpack-ms is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066312" comment="glibc-langpack-ms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334124" comment="glibc-langpack-mt is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066314" comment="glibc-langpack-mt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334125" comment="glibc-langpack-my is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066316" comment="glibc-langpack-my is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334126" comment="glibc-langpack-nan is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066318" comment="glibc-langpack-nan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334127" comment="glibc-langpack-nb is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066320" comment="glibc-langpack-nb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334128" comment="glibc-langpack-nds is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066322" comment="glibc-langpack-nds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334129" comment="glibc-langpack-ne is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066324" comment="glibc-langpack-ne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334130" comment="glibc-langpack-nhn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066326" comment="glibc-langpack-nhn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334131" comment="glibc-langpack-niu is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066328" comment="glibc-langpack-niu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334132" comment="glibc-langpack-nl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066330" comment="glibc-langpack-nl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334133" comment="glibc-langpack-nn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066332" comment="glibc-langpack-nn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334134" comment="glibc-langpack-nr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066334" comment="glibc-langpack-nr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334135" comment="glibc-langpack-nso is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066336" comment="glibc-langpack-nso is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334136" comment="glibc-langpack-oc is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066338" comment="glibc-langpack-oc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334137" comment="glibc-langpack-om is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066340" comment="glibc-langpack-om is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334138" comment="glibc-langpack-or is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066342" comment="glibc-langpack-or is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334139" comment="glibc-langpack-os is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066344" comment="glibc-langpack-os is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334140" comment="glibc-langpack-pa is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066346" comment="glibc-langpack-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334141" comment="glibc-langpack-pap is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066348" comment="glibc-langpack-pap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334142" comment="glibc-langpack-pl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066350" comment="glibc-langpack-pl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334143" comment="glibc-langpack-ps is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066352" comment="glibc-langpack-ps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334144" comment="glibc-langpack-pt is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066354" comment="glibc-langpack-pt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334145" comment="glibc-langpack-quz is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066356" comment="glibc-langpack-quz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334146" comment="glibc-langpack-raj is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066358" comment="glibc-langpack-raj is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334147" comment="glibc-langpack-rif is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066360" comment="glibc-langpack-rif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334148" comment="glibc-langpack-ro is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066362" comment="glibc-langpack-ro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334149" comment="glibc-langpack-ru is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066364" comment="glibc-langpack-ru is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334150" comment="glibc-langpack-rw is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066366" comment="glibc-langpack-rw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334151" comment="glibc-langpack-sa is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066368" comment="glibc-langpack-sa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334152" comment="glibc-langpack-sah is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066370" comment="glibc-langpack-sah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334153" comment="glibc-langpack-sat is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066372" comment="glibc-langpack-sat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334154" comment="glibc-langpack-sc is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066374" comment="glibc-langpack-sc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334155" comment="glibc-langpack-sd is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066376" comment="glibc-langpack-sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334156" comment="glibc-langpack-se is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066378" comment="glibc-langpack-se is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334157" comment="glibc-langpack-sgs is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066380" comment="glibc-langpack-sgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334158" comment="glibc-langpack-shn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066382" comment="glibc-langpack-shn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334159" comment="glibc-langpack-shs is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066384" comment="glibc-langpack-shs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334160" comment="glibc-langpack-si is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066386" comment="glibc-langpack-si is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334161" comment="glibc-langpack-sid is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066388" comment="glibc-langpack-sid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334162" comment="glibc-langpack-sk is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066390" comment="glibc-langpack-sk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334163" comment="glibc-langpack-sl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066392" comment="glibc-langpack-sl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334164" comment="glibc-langpack-sm is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066394" comment="glibc-langpack-sm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334165" comment="glibc-langpack-so is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066396" comment="glibc-langpack-so is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334166" comment="glibc-langpack-sq is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066398" comment="glibc-langpack-sq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334167" comment="glibc-langpack-sr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066400" comment="glibc-langpack-sr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334168" comment="glibc-langpack-ss is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066402" comment="glibc-langpack-ss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334169" comment="glibc-langpack-ssy is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066404" comment="glibc-langpack-ssy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334170" comment="glibc-langpack-st is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066406" comment="glibc-langpack-st is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334171" comment="glibc-langpack-su is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066408" comment="glibc-langpack-su is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334172" comment="glibc-langpack-sv is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066410" comment="glibc-langpack-sv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334173" comment="glibc-langpack-sw is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066412" comment="glibc-langpack-sw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334174" comment="glibc-langpack-syr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066414" comment="glibc-langpack-syr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334175" comment="glibc-langpack-szl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066416" comment="glibc-langpack-szl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334176" comment="glibc-langpack-ta is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066418" comment="glibc-langpack-ta is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334177" comment="glibc-langpack-tcy is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066420" comment="glibc-langpack-tcy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334178" comment="glibc-langpack-te is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066422" comment="glibc-langpack-te is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334179" comment="glibc-langpack-tg is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066424" comment="glibc-langpack-tg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334180" comment="glibc-langpack-th is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066426" comment="glibc-langpack-th is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334181" comment="glibc-langpack-the is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066428" comment="glibc-langpack-the is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334182" comment="glibc-langpack-ti is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066430" comment="glibc-langpack-ti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334183" comment="glibc-langpack-tig is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066432" comment="glibc-langpack-tig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334184" comment="glibc-langpack-tk is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066434" comment="glibc-langpack-tk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334185" comment="glibc-langpack-tl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066032" comment="glibc-langpack-tl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334186" comment="glibc-langpack-tn is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066034" comment="glibc-langpack-tn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334187" comment="glibc-langpack-to is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066036" comment="glibc-langpack-to is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334188" comment="glibc-langpack-tok is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066038" comment="glibc-langpack-tok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334189" comment="glibc-langpack-tpi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066040" comment="glibc-langpack-tpi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334190" comment="glibc-langpack-tr is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066042" comment="glibc-langpack-tr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334191" comment="glibc-langpack-ts is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066044" comment="glibc-langpack-ts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334192" comment="glibc-langpack-tt is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066046" comment="glibc-langpack-tt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334193" comment="glibc-langpack-ug is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066048" comment="glibc-langpack-ug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334194" comment="glibc-langpack-uk is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066050" comment="glibc-langpack-uk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334195" comment="glibc-langpack-unm is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066052" comment="glibc-langpack-unm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334196" comment="glibc-langpack-ur is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066054" comment="glibc-langpack-ur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334197" comment="glibc-langpack-uz is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066056" comment="glibc-langpack-uz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334198" comment="glibc-langpack-ve is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066058" comment="glibc-langpack-ve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334199" comment="glibc-langpack-vi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066060" comment="glibc-langpack-vi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334200" comment="glibc-langpack-wa is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066062" comment="glibc-langpack-wa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334201" comment="glibc-langpack-wae is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066064" comment="glibc-langpack-wae is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334202" comment="glibc-langpack-wal is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066066" comment="glibc-langpack-wal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334203" comment="glibc-langpack-wo is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066068" comment="glibc-langpack-wo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334204" comment="glibc-langpack-xh is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066070" comment="glibc-langpack-xh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334205" comment="glibc-langpack-yi is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066072" comment="glibc-langpack-yi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334206" comment="glibc-langpack-yo is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066074" comment="glibc-langpack-yo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334207" comment="glibc-langpack-yue is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066076" comment="glibc-langpack-yue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334208" comment="glibc-langpack-yuw is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066078" comment="glibc-langpack-yuw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334209" comment="glibc-langpack-zgh is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066080" comment="glibc-langpack-zgh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334210" comment="glibc-langpack-zh is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066082" comment="glibc-langpack-zh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334211" comment="glibc-langpack-zu is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066084" comment="glibc-langpack-zu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334212" comment="glibc-locale-source is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066086" comment="glibc-locale-source is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334213" comment="glibc-minimal-langpack is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066088" comment="glibc-minimal-langpack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334214" comment="glibc-utils is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066090" comment="glibc-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334215" comment="libnsl is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066092" comment="libnsl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334216" comment="glibc-benchtests is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066094" comment="glibc-benchtests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334217" comment="glibc-nss-devel is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066096" comment="glibc-nss-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334218" comment="glibc-static is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066436" comment="glibc-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334219" comment="nss_db is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066438" comment="nss_db is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334220" comment="nss_hesiod is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066440" comment="nss_hesiod is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261334221" comment="glibc-doc is earlier than 0:2.39-58.el10_1.7.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066442" comment="glibc-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261843" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1843: nodejs22 security update (Important)</title>
        <reference ref_id="CVE-2025-55130" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55130"/>
        <reference ref_id="CVE-2025-55131" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55131"/>
        <reference ref_id="CVE-2025-55132" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55132"/>
        <reference ref_id="CVE-2025-59465" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59465"/>
        <reference ref_id="CVE-2025-59466" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59466"/>
        <reference ref_id="CVE-2026-21637" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21637"/>
        <reference ref_id="RHSA-2026:1843" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1843"/>
        <reference ref_id="ALSA-2026:1843" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1843.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime \ for easily building fast, scalable network applications. \ Node.js uses an event-driven, non-blocking I/O model that \ makes it lightweight and efficient, perfect for data-intensive \ real-time applications that run across distributed devices.  

Security Fix(es):  

  * nodejs: Nodejs filesystem permissions bypass (CVE-2025-55132)
  * nodejs: Nodejs denial of service (CVE-2026-21637)
  * nodejs: Nodejs denial of service (CVE-2025-59466)
  * nodejs: Nodejs denial of service (CVE-2025-59465)
  * nodejs: Nodejs uninitialized memory exposure (CVE-2025-55131)
  * nodejs: Nodejs file permissions bypass (CVE-2025-55130)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431338" id="2431338"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431340" id="2431340"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431343" id="2431343"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431349" id="2431349"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431350" id="2431350"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431352" id="2431352"></bugzilla>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-55130" impact="Important" cwe="CWE-281" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2025-55130</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-55131" impact="Important" cwe="CWE-497" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L">CVE-2025-55131</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-55132" impact="Low" cwe="CWE-281" cvss3="CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N">CVE-2025-55132</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-59465" impact="Important" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59465</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-59466" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59466</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21637" impact="Moderate" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21637</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261843001" comment="nodejs is earlier than 1:22.22.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493002" comment="nodejs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261843002" comment="nodejs-devel is earlier than 1:22.22.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493004" comment="nodejs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261843003" comment="nodejs-full-i18n is earlier than 1:22.22.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493006" comment="nodejs-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261843004" comment="nodejs-libs is earlier than 1:22.22.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493008" comment="nodejs-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261843005" comment="nodejs-npm is earlier than 1:10.9.4-1.22.22.0.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493010" comment="nodejs-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261843006" comment="nodejs-docs is earlier than 1:22.22.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493012" comment="nodejs-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261597" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1597: iperf3 security update (Moderate)</title>
        <reference ref_id="CVE-2025-54349" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-54349"/>
        <reference ref_id="RHSA-2026:1597" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1597"/>
        <reference ref_id="ALSA-2026:1597" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1597.html"/>
        <description>Iperf is a tool which can measure maximum TCP bandwidth and tune various parameters and UDP characteristics. Iperf reports bandwidth, delay jitter, and data-gram loss.  

Security Fix(es):  

  * iperf3: iperf Heap Buffer Overflow (CVE-2025-54349)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-01-29"/>
          <updated date="2026-01-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2386151" id="2386151"></bugzilla>
          <cve public="20250803" href="https://access.redhat.com/security/cve/CVE-2025-54349" impact="Moderate" cwe="CWE-193" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L">CVE-2025-54349</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261597001" comment="iperf3 is earlier than 0:3.17.1-5.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261597002" comment="iperf3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261842" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1842: nodejs24 security update (Important)</title>
        <reference ref_id="CVE-2025-55130" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55130"/>
        <reference ref_id="CVE-2025-55131" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55131"/>
        <reference ref_id="CVE-2025-55132" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-55132"/>
        <reference ref_id="CVE-2025-59465" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59465"/>
        <reference ref_id="CVE-2025-59466" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59466"/>
        <reference ref_id="CVE-2026-21637" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21637"/>
        <reference ref_id="RHSA-2026:1842" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1842"/>
        <reference ref_id="ALSA-2026:1842" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1842.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime for easily building fast, scalable network applications. Node.js uses an event-driven, non-blocking I/O model that makes it lightweight and efficient, perfect for data-intensive real-time applications that run across distributed devices.  

Security Fix(es):  

  * nodejs: Nodejs filesystem permissions bypass (CVE-2025-55132)
  * nodejs: Nodejs denial of service (CVE-2026-21637)
  * nodejs: Nodejs denial of service (CVE-2025-59466)
  * nodejs: Nodejs denial of service (CVE-2025-59465)
  * nodejs: Nodejs uninitialized memory exposure (CVE-2025-55131)
  * nodejs: Nodejs file permissions bypass (CVE-2025-55130)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431338" id="2431338"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431340" id="2431340"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431343" id="2431343"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431349" id="2431349"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431350" id="2431350"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431352" id="2431352"></bugzilla>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-55130" impact="Important" cwe="CWE-281" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2025-55130</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-55131" impact="Important" cwe="CWE-497" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L">CVE-2025-55131</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-55132" impact="Low" cwe="CWE-281" cvss3="CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N">CVE-2025-55132</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-59465" impact="Important" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59465</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-59466" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59466</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21637" impact="Moderate" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21637</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842001" comment="nodejs24 is earlier than 1:24.13.0-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842002" comment="nodejs24 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842003" comment="nodejs24-devel is earlier than 1:24.13.0-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842004" comment="nodejs24-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842005" comment="nodejs24-full-i18n is earlier than 1:24.13.0-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842006" comment="nodejs24-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842007" comment="nodejs24-libs is earlier than 1:24.13.0-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842008" comment="nodejs24-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842009" comment="nodejs24-docs is earlier than 1:24.13.0-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842010" comment="nodejs24-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842011" comment="nodejs24-npm is earlier than 1:11.6.2-1.24.13.0.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842012" comment="nodejs24-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202610758" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:10758: sudo security update (Important)</title>
        <reference ref_id="CVE-2026-35535" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35535"/>
        <reference ref_id="RHSA-2026:10758" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:10758"/>
        <reference ref_id="ALSA-2026:10758" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-10758.html"/>
        <description>The sudo packages contain the sudo utility which allows system administrators to provide certain users with the permission to execute privileged commands, which are used for system management purposes, without having to log in as root.  

Security Fix(es):  

  * sudo: Sudo: Privilege escalation due to failure in privilege drop calls (CVE-2026-35535)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-27"/>
          <updated date="2026-04-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2454714" id="2454714"></bugzilla>
          <cve public="20260403" href="https://access.redhat.com/security/cve/CVE-2026-35535" impact="Important" cwe="CWE-272" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-35535</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610758001" comment="sudo is earlier than 0:1.9.15-10.p5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511537002" comment="sudo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610758002" comment="sudo-python-plugin is earlier than 0:1.9.15-10.p5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511537004" comment="sudo-python-plugin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262182" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2182: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2026-0719" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0719"/>
        <reference ref_id="CVE-2026-1761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1761"/>
        <reference ref_id="RHSA-2026:2182" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2182"/>
        <reference ref_id="ALSA-2026:2182" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2182.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Signed to Unsigned Conversion Error Leading to Stack-Based Buffer Overflow in libsoup NTLM Authentication (CVE-2026-0719)
  * libsoup: Stack-Based Buffer Overflow in libsoup Multipart Response Parsingmultipart HTTP response (CVE-2026-1761)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-05"/>
          <updated date="2026-02-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2427906" id="2427906"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2435961" id="2435961"></bugzilla>
          <cve public="20260108" href="https://access.redhat.com/security/cve/CVE-2026-0719" impact="Important" cwe="CWE-121" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2026-0719</cve>
          <cve public="20260202" href="https://access.redhat.com/security/cve/CVE-2026-1761" impact="Important" cwe="CWE-121" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L">CVE-2026-1761</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262182001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.9"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262410001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262182002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.9"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262410002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262182003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.9"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262410003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261837" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1837: osbuild-composer security update (Moderate)</title>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2026:1837" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1837"/>
        <reference ref_id="ALSA-2026:1837" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1837.html"/>
        <description>A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients.  

Security Fix(es):  

  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261837001" comment="osbuild-composer is earlier than 0:149-4.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623002" comment="osbuild-composer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261837002" comment="osbuild-composer-core is earlier than 0:149-4.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623004" comment="osbuild-composer-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261837003" comment="osbuild-composer-worker is earlier than 0:149-4.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623006" comment="osbuild-composer-worker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261831" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1831: qemu-kvm security update (Moderate)</title>
        <reference ref_id="CVE-2025-11234" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-11234"/>
        <reference ref_id="RHSA-2026:1831" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1831"/>
        <reference ref_id="ALSA-2026:1831" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1831.html"/>
        <description>Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm packages provide the user-space component for running virtual machines that use KVM.  

Security Fix(es):  

  * qemu-kvm: VNC WebSocket handshake use-after-free (CVE-2025-11234)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2401209" id="2401209"></bugzilla>
          <cve public="20250930" href="https://access.redhat.com/security/cve/CVE-2025-11234" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-11234</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831001" comment="qemu-guest-agent is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831002" comment="qemu-guest-agent is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831003" comment="qemu-img is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831004" comment="qemu-img is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831005" comment="qemu-kvm is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831006" comment="qemu-kvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831007" comment="qemu-kvm-audio-pa is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831008" comment="qemu-kvm-audio-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831009" comment="qemu-kvm-block-blkio is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831010" comment="qemu-kvm-block-blkio is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831011" comment="qemu-kvm-block-curl is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831012" comment="qemu-kvm-block-curl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831013" comment="qemu-kvm-block-rbd is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831014" comment="qemu-kvm-block-rbd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831015" comment="qemu-kvm-common is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831016" comment="qemu-kvm-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831017" comment="qemu-kvm-core is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831018" comment="qemu-kvm-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831019" comment="qemu-kvm-device-display-virtio-gpu is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831020" comment="qemu-kvm-device-display-virtio-gpu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831021" comment="qemu-kvm-device-display-virtio-gpu-pci is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831022" comment="qemu-kvm-device-display-virtio-gpu-pci is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831023" comment="qemu-kvm-device-display-virtio-vga is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831024" comment="qemu-kvm-device-display-virtio-vga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831025" comment="qemu-kvm-device-usb-host is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831026" comment="qemu-kvm-device-usb-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831027" comment="qemu-kvm-device-usb-redirect is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831028" comment="qemu-kvm-device-usb-redirect is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831029" comment="qemu-kvm-docs is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831030" comment="qemu-kvm-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831031" comment="qemu-kvm-tools is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831032" comment="qemu-kvm-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831033" comment="qemu-kvm-ui-egl-headless is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831034" comment="qemu-kvm-ui-egl-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831035" comment="qemu-kvm-ui-opengl is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831036" comment="qemu-kvm-ui-opengl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831037" comment="qemu-pr-helper is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831038" comment="qemu-pr-helper is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831039" comment="qemu-kvm-device-display-virtio-gpu-ccw is earlier than 18:10.0.0-14.el10_1.5.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261831040" comment="qemu-kvm-device-display-virtio-gpu-ccw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202621433" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:21433: httpd security update (Important)</title>
        <reference ref_id="CVE-2026-28780" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-28780"/>
        <reference ref_id="CVE-2026-33007" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33007"/>
        <reference ref_id="CVE-2026-33857" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33857"/>
        <reference ref_id="CVE-2026-34032" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34032"/>
        <reference ref_id="CVE-2026-34059" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34059"/>
        <reference ref_id="RHSA-2026:21433" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:21433"/>
        <reference ref_id="ALSA-2026:21433" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-21433.html"/>
        <description>The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server.  

Security Fix(es):  

  * httpd: mod_proxy_ajp: heap-based buffer over-read and memory disclosure in ajp_parse_data() (CVE-2026-34059)
  * httpd: mod_proxy_ajp: heap-based buffer over-read due to missing null-termination check (CVE-2026-34032)
  * httpd: mod_proxy_ajp: off-by-one out-of-bounds reads in AJP getter functions (CVE-2026-33857)
  * httpd: mod_authn_socache: NULL pointer dereference can cause a child process crash (CVE-2026-33007)
  * Apache HTTP Server: mod_proxy_ajp: Apache HTTP Server mod_proxy_ajp: Arbitrary code execution via heap-based buffer overflow (CVE-2026-28780)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-27"/>
          <updated date="2026-05-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2464940" id="2464940"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464952" id="2464952"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464953" id="2464953"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2465299" id="2465299"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2466913" id="2466913"></bugzilla>
          <cve public="20260505" href="https://access.redhat.com/security/cve/CVE-2026-28780" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-28780</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-33007" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-33007</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-33857" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33857</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-34032" impact="Moderate" cwe="CWE-170" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-34032</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-34059" impact="Moderate" cwe="CWE-126" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-34059</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433001" comment="httpd is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095010" comment="httpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433002" comment="httpd-core is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095012" comment="httpd-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433003" comment="httpd-devel is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095014" comment="httpd-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433004" comment="httpd-tools is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095016" comment="httpd-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433005" comment="mod_ldap is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095018" comment="mod_ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433006" comment="mod_lua is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095002" comment="mod_lua is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433007" comment="mod_proxy_html is earlier than 1:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095004" comment="mod_proxy_html is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433008" comment="mod_session is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095006" comment="mod_session is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433009" comment="mod_ssl is earlier than 1:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095008" comment="mod_ssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433010" comment="httpd-filesystem is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095020" comment="httpd-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621433011" comment="httpd-manual is earlier than 0:2.4.63-13.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095022" comment="httpd-manual is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261714" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1714: wireshark security update (Moderate)</title>
        <reference ref_id="CVE-2025-9817" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9817"/>
        <reference ref_id="RHSA-2026:1714" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1714"/>
        <reference ref_id="ALSA-2026:1714" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1714.html"/>
        <description>The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.  

Security Fix(es):  

  * Wireshark: NULL Pointer Dereference in Wireshark (CVE-2025-9817)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-02"/>
          <updated date="2026-02-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2392839" id="2392839"></bugzilla>
          <cve public="20250903" href="https://access.redhat.com/security/cve/CVE-2025-9817" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-9817</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261714001" comment="wireshark is earlier than 1:4.4.2-4.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121002" comment="wireshark is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261714002" comment="wireshark-cli is earlier than 1:4.4.2-4.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121004" comment="wireshark-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261714003" comment="wireshark-devel is earlier than 1:4.4.2-4.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121006" comment="wireshark-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264012" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4012: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38106" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38106"/>
        <reference ref_id="CVE-2025-38141" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38141"/>
        <reference ref_id="CVE-2025-38703" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38703"/>
        <reference ref_id="CVE-2025-39760" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39760"/>
        <reference ref_id="CVE-2025-39818" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39818"/>
        <reference ref_id="CVE-2025-40249" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40249"/>
        <reference ref_id="CVE-2025-71085" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-71085"/>
        <reference ref_id="CVE-2026-23001" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23001"/>
        <reference ref_id="CVE-2026-23097" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23097"/>
        <reference ref_id="CVE-2026-23156" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23156"/>
        <reference ref_id="RHSA-2026:4012" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4012"/>
        <reference ref_id="ALSA-2026:4012" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4012.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Use-after-free in device mapper due to race condition in zone reporting (CVE-2025-38141)
  * kernel: Linux kernel io_uring: Local privilege escalation, information disclosure, or denial of service via use-after-free (CVE-2025-38106)
  * kernel: drm/xe: Make dma-fences compliant with the safe access rules (CVE-2025-38703)
  * kernel: Linux kernel: Denial of Service via out-of-bounds read in USB configuration parsing (CVE-2025-39760)
  * kernel: HID: intel-thc-hid: intel-thc: Fix incorrect pointer arithmetic in I2C regs save (CVE-2025-39818)
  * kernel: Kernel: Use-after-free in GPIO character device allows privilege escalation or denial of service (CVE-2025-40249)
  * kernel: ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() (CVE-2025-71085)
  * kernel: macvlan: fix possible UAF in macvlan_forward_source() (CVE-2026-23001)
  * kernel: Linux kernel: Denial of Service due to a deadlock in hugetlb folio migration (CVE-2026-23097)
  * kernel: Linux kernel: Information disclosure in efivarfs via incorrect error propagation (CVE-2026-23156)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-09"/>
          <updated date="2026-03-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2376052" id="2376052"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376077" id="2376077"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393157" id="2393157"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2394601" id="2394601"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2395797" id="2395797"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418886" id="2418886"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429026" id="2429026"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2432664" id="2432664"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2436802" id="2436802"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439951" id="2439951"></bugzilla>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38106" impact="Moderate" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-38106</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38141" impact="Moderate" cwe="CWE-364" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38141</cve>
          <cve public="20250904" href="https://access.redhat.com/security/cve/CVE-2025-38703" impact="Moderate" cwe="CWE-826" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38703</cve>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-39760" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-39760</cve>
          <cve public="20250916" href="https://access.redhat.com/security/cve/CVE-2025-39818" impact="Moderate" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-39818</cve>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40249" impact="Moderate" cwe="CWE-910" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-40249</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2025-71085" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-71085</cve>
          <cve public="20260125" href="https://access.redhat.com/security/cve/CVE-2026-23001" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23001</cve>
          <cve public="20260204" href="https://access.redhat.com/security/cve/CVE-2026-23097" impact="Moderate" cwe="CWE-833" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2026-23097</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23156" impact="Moderate" cwe="CWE-390" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-23156</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012001" comment="kernel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012002" comment="kernel-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012003" comment="kernel-debug is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012004" comment="kernel-debug-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012011" comment="kernel-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012013" comment="kernel-headers is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012014" comment="kernel-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012015" comment="kernel-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012018" comment="kernel-rt is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012019" comment="kernel-rt-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012030" comment="kernel-tools is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012034" comment="perf is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012035" comment="python3-perf is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012036" comment="rtla is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012037" comment="rv is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012045" comment="kernel-64k is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012046" comment="kernel-64k-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012073" comment="libperf is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264012075" comment="kernel-doc is earlier than 0:6.12.0-124.43.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622963" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22963: samba security update (Critical)</title>
        <reference ref_id="CVE-2026-1933" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1933"/>
        <reference ref_id="CVE-2026-2340" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2340"/>
        <reference ref_id="CVE-2026-3012" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3012"/>
        <reference ref_id="CVE-2026-4408" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4408"/>
        <reference ref_id="CVE-2026-4480" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4480"/>
        <reference ref_id="CVE-2026-40170" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-40170"/>
        <reference ref_id="RHSA-2026:22963" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22963"/>
        <reference ref_id="ALSA-2026:22963" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22963.html"/>
        <description>Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.  

Security Fix(es):  

  * samba: Missing access check on reparse point operations (CVE-2026-1933)
  * samba: vfs_worm does not block directory modification (CVE-2026-2340)
  * samba: group policy certificate enrollment uses &lt;http://&gt; without validation (CVE-2026-3012)
  * samba: Samba: Remote Code Execution in printing subsystem via unescaped job description (CVE-2026-4480)
  * ngtcp2: ngtcp2: Denial of service via stack buffer overflow during QUIC handshake (CVE-2026-40170)
  * samba: Remote Code Execution in SAMR (CVE-2026-4408)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Critical</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-03"/>
          <updated date="2026-06-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2447317" id="2447317"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447318" id="2447318"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447319" id="2447319"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2452232" id="2452232"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2459061" id="2459061"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479762" id="2479762"></bugzilla>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-1933" impact="Important" cwe="CWE-284" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H">CVE-2026-1933</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-2340" impact="Moderate" cwe="CWE-280" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N">CVE-2026-2340</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-3012" impact="Important" cwe="CWE-345" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N">CVE-2026-3012</cve>
          <cve public="20260526" href="https://access.redhat.com/security/cve/CVE-2026-4408" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H">CVE-2026-4408</cve>
          <cve public="20260526" href="https://access.redhat.com/security/cve/CVE-2026-4480" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-4480</cve>
          <cve public="20260416" href="https://access.redhat.com/security/cve/CVE-2026-40170" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-40170</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963001" comment="ldb-tools is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963002" comment="ldb-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963003" comment="libldb is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963004" comment="libldb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963005" comment="libnetapi is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963006" comment="libnetapi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963007" comment="libsmbclient is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963008" comment="libsmbclient is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963009" comment="libwbclient is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963010" comment="libwbclient is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963011" comment="python3-ldb is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963012" comment="python3-ldb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963013" comment="python3-samba is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963014" comment="python3-samba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963015" comment="python3-samba-dc is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963016" comment="python3-samba-dc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963017" comment="samba is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963018" comment="samba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963019" comment="samba-client is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963020" comment="samba-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963021" comment="samba-client-libs is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963022" comment="samba-client-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963023" comment="samba-common-libs is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963024" comment="samba-common-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963025" comment="samba-common-tools is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963026" comment="samba-common-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963027" comment="samba-dc-libs is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963028" comment="samba-dc-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963029" comment="samba-dcerpc is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963030" comment="samba-dcerpc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963031" comment="samba-krb5-printing is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963032" comment="samba-krb5-printing is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963033" comment="samba-ldb-ldap-modules is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963034" comment="samba-ldb-ldap-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963035" comment="samba-libs is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963036" comment="samba-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963037" comment="samba-tools is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963038" comment="samba-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963039" comment="samba-vfs-iouring is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963040" comment="samba-vfs-iouring is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963041" comment="samba-winbind is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963042" comment="samba-winbind is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963043" comment="samba-winbind-clients is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963044" comment="samba-winbind-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963045" comment="samba-winbind-krb5-locator is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963046" comment="samba-winbind-krb5-locator is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963047" comment="samba-winbind-modules is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963048" comment="samba-winbind-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963049" comment="samba-winexe is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963050" comment="samba-winexe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963051" comment="libldb-devel is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963052" comment="libldb-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963053" comment="libnetapi-devel is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963054" comment="libnetapi-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963055" comment="libsmbclient-devel is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963056" comment="libsmbclient-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963057" comment="libwbclient-devel is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963058" comment="libwbclient-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963059" comment="python3-samba-test is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963060" comment="python3-samba-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963061" comment="samba-devel is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963062" comment="samba-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963063" comment="samba-test is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963064" comment="samba-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963065" comment="samba-test-libs is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963066" comment="samba-test-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963067" comment="samba-common is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963068" comment="samba-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963069" comment="samba-gpupdate is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963070" comment="samba-gpupdate is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963071" comment="samba-usershares is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963072" comment="samba-usershares is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963073" comment="samba-pidl is earlier than 0:4.23.5-109.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622963074" comment="samba-pidl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261907" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1907: opentelemetry-collector security update (Important)</title>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="RHSA-2026:1907" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1907"/>
        <reference ref_id="ALSA-2026:1907" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1907.html"/>
        <description>Collector with the supported components for a AlmaLinux build of OpenTelemetry  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-04"/>
          <updated date="2026-02-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261907001" comment="opentelemetry-collector is earlier than 0:0.135.0-3.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850002" comment="opentelemetry-collector is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261905" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1905: fence-agents security update (Important)</title>
        <reference ref_id="CVE-2026-23490" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23490"/>
        <reference ref_id="RHSA-2026:1905" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1905"/>
        <reference ref_id="ALSA-2026:1905" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1905.html"/>
        <description>The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.   

Security Fix(es):  

  * pyasn1: pyasn1: Denial of Service due to memory exhaustion from malformed RELATIVE-OID (CVE-2026-23490)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-04"/>
          <updated date="2026-02-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2430472" id="2430472"></bugzilla>
          <cve public="20260116" href="https://access.redhat.com/security/cve/CVE-2026-23490" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-23490</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905001" comment="fence-agents-aliyun is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905002" comment="fence-agents-aliyun is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905003" comment="fence-agents-all is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905004" comment="fence-agents-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905005" comment="fence-agents-aws is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905006" comment="fence-agents-aws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905007" comment="fence-agents-azure-arm is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905008" comment="fence-agents-azure-arm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905009" comment="fence-agents-common is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905010" comment="fence-agents-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905011" comment="fence-agents-gce is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905012" comment="fence-agents-gce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905013" comment="fence-agents-kdump is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905014" comment="fence-agents-kdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905015" comment="fence-agents-kubevirt is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905016" comment="fence-agents-kubevirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905017" comment="fence-agents-openstack is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905018" comment="fence-agents-openstack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905019" comment="fence-agents-redfish is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905020" comment="fence-agents-redfish is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905021" comment="fence-virt is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905022" comment="fence-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905023" comment="fence-virtd is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905024" comment="fence-virtd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905025" comment="fence-virtd-cpg is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905026" comment="fence-virtd-cpg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905027" comment="fence-virtd-libvirt is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905028" comment="fence-virtd-libvirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905029" comment="fence-virtd-multicast is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905030" comment="fence-virtd-multicast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905031" comment="fence-virtd-serial is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905032" comment="fence-virtd-serial is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905033" comment="fence-virtd-tcp is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905034" comment="fence-virtd-tcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905035" comment="ha-cloud-support is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905036" comment="ha-cloud-support is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905037" comment="fence-agents-zvm is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905038" comment="fence-agents-zvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905039" comment="fence-agents-amt-ws is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905040" comment="fence-agents-amt-ws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905041" comment="fence-agents-apc is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905042" comment="fence-agents-apc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905043" comment="fence-agents-apc-snmp is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905044" comment="fence-agents-apc-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905045" comment="fence-agents-bladecenter is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905046" comment="fence-agents-bladecenter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905047" comment="fence-agents-brocade is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905048" comment="fence-agents-brocade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905049" comment="fence-agents-cisco-mds is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905050" comment="fence-agents-cisco-mds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905051" comment="fence-agents-cisco-ucs is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905052" comment="fence-agents-cisco-ucs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905053" comment="fence-agents-drac5 is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905054" comment="fence-agents-drac5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905055" comment="fence-agents-eaton-snmp is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905056" comment="fence-agents-eaton-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905057" comment="fence-agents-emerson is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905058" comment="fence-agents-emerson is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905059" comment="fence-agents-eps is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905060" comment="fence-agents-eps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905061" comment="fence-agents-heuristics-ping is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905062" comment="fence-agents-heuristics-ping is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905063" comment="fence-agents-hpblade is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905064" comment="fence-agents-hpblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905065" comment="fence-agents-ibm-powervs is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905066" comment="fence-agents-ibm-powervs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905067" comment="fence-agents-ibm-vpc is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905068" comment="fence-agents-ibm-vpc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905069" comment="fence-agents-ibmblade is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905070" comment="fence-agents-ibmblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905071" comment="fence-agents-ifmib is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905072" comment="fence-agents-ifmib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905073" comment="fence-agents-ilo-moonshot is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905074" comment="fence-agents-ilo-moonshot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905075" comment="fence-agents-ilo-mp is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905076" comment="fence-agents-ilo-mp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905077" comment="fence-agents-ilo-ssh is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905078" comment="fence-agents-ilo-ssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905079" comment="fence-agents-ilo2 is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905080" comment="fence-agents-ilo2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905081" comment="fence-agents-intelmodular is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905082" comment="fence-agents-intelmodular is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905083" comment="fence-agents-ipdu is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905084" comment="fence-agents-ipdu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905085" comment="fence-agents-ipmilan is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905086" comment="fence-agents-ipmilan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905087" comment="fence-agents-mpath is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905088" comment="fence-agents-mpath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905089" comment="fence-agents-nutanix-ahv is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905090" comment="fence-agents-nutanix-ahv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905091" comment="fence-agents-rhevm is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905092" comment="fence-agents-rhevm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905093" comment="fence-agents-rsa is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905094" comment="fence-agents-rsa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905095" comment="fence-agents-rsb is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905096" comment="fence-agents-rsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905097" comment="fence-agents-sbd is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905098" comment="fence-agents-sbd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905099" comment="fence-agents-scsi is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905100" comment="fence-agents-scsi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905101" comment="fence-agents-virsh is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905102" comment="fence-agents-virsh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905103" comment="fence-agents-vmware-rest is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905104" comment="fence-agents-vmware-rest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905105" comment="fence-agents-vmware-soap is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905106" comment="fence-agents-vmware-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905107" comment="fence-agents-wti is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905108" comment="fence-agents-wti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905109" comment="fence-agents-lpar is earlier than 0:4.16.0-13.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905110" comment="fence-agents-lpar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262271" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2271: firefox security update (Important)</title>
        <reference ref_id="CVE-2025-14327" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14327"/>
        <reference ref_id="CVE-2026-0877" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0877"/>
        <reference ref_id="CVE-2026-0878" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0878"/>
        <reference ref_id="CVE-2026-0879" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0879"/>
        <reference ref_id="CVE-2026-0880" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0880"/>
        <reference ref_id="CVE-2026-0882" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0882"/>
        <reference ref_id="CVE-2026-0883" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0883"/>
        <reference ref_id="CVE-2026-0884" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0884"/>
        <reference ref_id="CVE-2026-0885" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0885"/>
        <reference ref_id="CVE-2026-0886" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0886"/>
        <reference ref_id="CVE-2026-0887" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0887"/>
        <reference ref_id="CVE-2026-0890" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0890"/>
        <reference ref_id="CVE-2026-0891" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0891"/>
        <reference ref_id="RHSA-2026:2271" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2271"/>
        <reference ref_id="ALSA-2026:2271" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2271.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: Spoofing issue in the Downloads Panel component (CVE-2025-14327)
  * firefox: Use-after-free in the JavaScript: GC component (CVE-2026-0885)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147 (CVE-2026-0891)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component (CVE-2026-0878)
  * firefox: Use-after-free in the IPC component (CVE-2026-0882)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-0884)
  * firefox: Information disclosure in the Networking component (CVE-2026-0883)
  * firefox: Mitigation bypass in the DOM: Security component (CVE-2026-0877)
  * firefox: Spoofing issue in the DOM: Copy &amp; Paste and Drag &amp; Drop component (CVE-2026-0890)
  * firefox: Clickjacking issue, information disclosure in the PDF Viewer component (CVE-2026-0887)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics component (CVE-2026-0879)
  * firefox: Sandbox escape due to integer overflow in the Graphics component (CVE-2026-0880)
  * firefox: Incorrect boundary conditions in the Graphics component (CVE-2026-0886)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-09"/>
          <updated date="2026-02-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2420507" id="2420507"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428961" id="2428961"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428963" id="2428963"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428965" id="2428965"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428966" id="2428966"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428967" id="2428967"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428968" id="2428968"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428969" id="2428969"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428971" id="2428971"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428972" id="2428972"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428973" id="2428973"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428975" id="2428975"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428978" id="2428978"></bugzilla>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14327" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14327</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0877" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0877</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0878" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0878</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0879" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0879</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0880" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0880</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0882" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0882</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0883" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0883</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0884" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0884</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0885" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0885</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0886" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0886</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0887" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0887</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0890" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-0890</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0891" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0891</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20262271001" comment="firefox is earlier than 0:140.7.0-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262286" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2286: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2025-14327" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14327"/>
        <reference ref_id="CVE-2026-0877" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0877"/>
        <reference ref_id="CVE-2026-0878" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0878"/>
        <reference ref_id="CVE-2026-0879" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0879"/>
        <reference ref_id="CVE-2026-0880" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0880"/>
        <reference ref_id="CVE-2026-0882" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0882"/>
        <reference ref_id="CVE-2026-0883" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0883"/>
        <reference ref_id="CVE-2026-0884" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0884"/>
        <reference ref_id="CVE-2026-0885" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0885"/>
        <reference ref_id="CVE-2026-0886" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0886"/>
        <reference ref_id="CVE-2026-0887" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0887"/>
        <reference ref_id="CVE-2026-0890" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0890"/>
        <reference ref_id="CVE-2026-0891" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0891"/>
        <reference ref_id="RHSA-2026:2286" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2286"/>
        <reference ref_id="ALSA-2026:2286" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2286.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: Spoofing issue in the Downloads Panel component (CVE-2025-14327)
  * firefox: Use-after-free in the JavaScript: GC component (CVE-2026-0885)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147 (CVE-2026-0891)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component (CVE-2026-0878)
  * firefox: Use-after-free in the IPC component (CVE-2026-0882)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-0884)
  * firefox: Information disclosure in the Networking component (CVE-2026-0883)
  * firefox: Mitigation bypass in the DOM: Security component (CVE-2026-0877)
  * firefox: Spoofing issue in the DOM: Copy &amp; Paste and Drag &amp; Drop component (CVE-2026-0890)
  * firefox: Clickjacking issue, information disclosure in the PDF Viewer component (CVE-2026-0887)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics component (CVE-2026-0879)
  * firefox: Sandbox escape due to integer overflow in the Graphics component (CVE-2026-0880)
  * firefox: Incorrect boundary conditions in the Graphics component (CVE-2026-0886)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-09"/>
          <updated date="2026-02-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2420507" id="2420507"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428961" id="2428961"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428963" id="2428963"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428965" id="2428965"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428966" id="2428966"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428967" id="2428967"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428968" id="2428968"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428969" id="2428969"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428971" id="2428971"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428972" id="2428972"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428973" id="2428973"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428975" id="2428975"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428978" id="2428978"></bugzilla>
          <cve public="20251209" href="https://access.redhat.com/security/cve/CVE-2025-14327" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2025-14327</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0877" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0877</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0878" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0878</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0879" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0879</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0880" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0880</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0882" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0882</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0883" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0883</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0884" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0884</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0885" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0885</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0886" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0886</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0887" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-0887</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0890" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-0890</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2026-0891" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-0891</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20262286001" comment="thunderbird is earlier than 0:140.7.0-1.el10_1.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262410" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2410: libsoup3 security update (Important)</title>
        <reference ref_id="CVE-2026-1761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1761"/>
        <reference ref_id="RHSA-2026:2410" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2410"/>
        <reference ref_id="ALSA-2026:2410" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2410.html"/>
        <description>Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it), but the SOAP parts were removed long ago.  

Security Fix(es):  

  * libsoup: Stack-Based Buffer Overflow in libsoup Multipart Response Parsingmultipart HTTP response (CVE-2026-1761)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-10"/>
          <updated date="2026-02-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2435961" id="2435961"></bugzilla>
          <cve public="20260202" href="https://access.redhat.com/security/cve/CVE-2026-1761" impact="Important" cwe="CWE-121" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L">CVE-2026-1761</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262410001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262182001" comment="libsoup3 is earlier than 0:3.6.5-3.el10_1.9"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128002" comment="libsoup3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262410002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262182002" comment="libsoup3-devel is earlier than 0:3.6.5-3.el10_1.9"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128004" comment="libsoup3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262410003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.10"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262182003" comment="libsoup3-doc is earlier than 0:3.6.5-3.el10_1.9"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258128006" comment="libsoup3-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202610713" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:10713: pcs security update (Important)</title>
        <reference ref_id="CVE-2026-4800" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4800"/>
        <reference ref_id="RHSA-2026:10713" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:10713"/>
        <reference ref_id="ALSA-2026:10713" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-10713.html"/>
        <description>The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.  

Security Fix(es):  

  * lodash: lodash: Arbitrary code execution via untrusted input in template imports (CVE-2026-4800)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-27"/>
          <updated date="2026-04-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453496" id="2453496"></bugzilla>
          <cve public="20260331" href="https://access.redhat.com/security/cve/CVE-2026-4800" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-4800</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610713001" comment="pcs is earlier than 0:0.12.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036004" comment="pcs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610713002" comment="pcs-snmp is earlier than 0:0.12.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036002" comment="pcs-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610713003" comment="cockpit-ha-cluster is earlier than 0:0.12.1-1.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036006" comment="cockpit-ha-cluster is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262225" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2225: keylime security update (Critical)</title>
        <reference ref_id="CVE-2026-1709" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1709"/>
        <reference ref_id="RHSA-2026:2225" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2225"/>
        <reference ref_id="ALSA-2026:2225" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2225.html"/>
        <description>Keylime is a TPM based highly scalable remote boot attestation and runtime integrity measurement solution.  

Security Fix(es):  

  * keylime: Keylime: Authentication bypass allows unauthorized administrative operations due to missing client-side TLS authentication (CVE-2026-1709)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Critical</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-09"/>
          <updated date="2026-02-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2435514" id="2435514"></bugzilla>
          <cve public="20260206" href="https://access.redhat.com/security/cve/CVE-2026-1709" impact="Critical" cwe="CWE-322" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H">CVE-2026-1709</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225001" comment="keylime is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201002" comment="keylime is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225002" comment="keylime-base is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201004" comment="keylime-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225003" comment="keylime-registrar is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201006" comment="keylime-registrar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225004" comment="keylime-tenant is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201008" comment="keylime-tenant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225005" comment="keylime-tools is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201010" comment="keylime-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225006" comment="keylime-verifier is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201012" comment="keylime-verifier is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225007" comment="python3-keylime is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201014" comment="python3-keylime is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262225008" comment="keylime-selinux is earlier than 0:7.12.1-11.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202523201016" comment="keylime-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262222" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2222: freerdp security update (Important)</title>
        <reference ref_id="CVE-2026-23530" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23530"/>
        <reference ref_id="CVE-2026-23531" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23531"/>
        <reference ref_id="CVE-2026-23532" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23532"/>
        <reference ref_id="CVE-2026-23533" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23533"/>
        <reference ref_id="CVE-2026-23534" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23534"/>
        <reference ref_id="CVE-2026-23883" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23883"/>
        <reference ref_id="CVE-2026-23884" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23884"/>
        <reference ref_id="RHSA-2026:2222" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2222"/>
        <reference ref_id="ALSA-2026:2222" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2222.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * freerdp: FreeRDP: Heap buffer overflow leading to denial of service and potential code execution from a malicious server. (CVE-2026-23530)
  * freerdp: FreeRDP: Denial of Service and potential code execution via use-after-free vulnerability (CVE-2026-23884)
  * freerdp: FreeRDP: Arbitrary code execution and denial of service via malicious server (CVE-2026-23883)
  * freerdp: FreeRDP: Heap buffer overflow leads to denial of service and potential code execution (CVE-2026-23533)
  * freerdp: FreeRDP: Heap buffer overflow via crafted RDPGFX surface updates leads to denial of service and potential code execution. (CVE-2026-23531)
  * freerdp: FreeRDP: Arbitrary code execution and denial of service via client-side heap buffer overflow (CVE-2026-23534)
  * freerdp: FreeRDP: Denial of Service and potential code execution via client-side heap buffer overflow (CVE-2026-23532)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-09"/>
          <updated date="2026-02-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2430877" id="2430877"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430880" id="2430880"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430885" id="2430885"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430886" id="2430886"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430887" id="2430887"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430888" id="2430888"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430891" id="2430891"></bugzilla>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23530" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23530</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23531" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23531</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23532" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23532</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23533" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23533</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23534" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23534</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23883" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23883</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23884" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-23884</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262222001" comment="freerdp-server is earlier than 2:3.10.3-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262222002" comment="libwinpr-devel is earlier than 2:3.10.3-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262222003" comment="freerdp-devel is earlier than 2:3.10.3-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262222004" comment="freerdp is earlier than 2:3.10.3-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262222005" comment="freerdp-libs is earlier than 2:3.10.3-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262222006" comment="libwinpr is earlier than 2:3.10.3-5.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262706" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2706: golang security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61728" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61728"/>
        <reference ref_id="CVE-2025-61732" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61732"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:2706" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2706"/>
        <reference ref_id="ALSA-2026:2706" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2706.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * cmd/cgo: Potential code smuggling via doc comments in cmd/cgo (CVE-2025-61732)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-16"/>
          <updated date="2026-02-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2434431" id="2434431"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437016" id="2437016"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61728" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61728</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-61732" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-61732</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706001" comment="golang-race is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706002" comment="go-toolset is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706003" comment="golang is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706004" comment="golang-bin is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706005" comment="golang-src is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706006" comment="golang-tests is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706007" comment="golang-docs is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262706008" comment="golang-misc is earlier than 0:1.25.7-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264453" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4453: .NET 10.0 security update (Important)</title>
        <reference ref_id="CVE-2026-26127" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26127"/>
        <reference ref_id="CVE-2026-26130" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26130"/>
        <reference ref_id="RHSA-2026:4453" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4453"/>
        <reference ref_id="ALSA-2026:4453" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4453.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.104 and .NET Runtime 10.0.4.Security Fix(es):  

  * .net: .NET: Denial of Service via out-of-bounds read (CVE-2026-26127)
  * asp.net: ASP.NET Core: Denial of Service via uncontrolled resource allocation (CVE-2026-26130)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-12"/>
          <updated date="2026-03-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2446098" id="2446098"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2446134" id="2446134"></bugzilla>
          <cve public="20260310" href="https://access.redhat.com/security/cve/CVE-2026-26127" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26127</cve>
          <cve public="20260310" href="https://access.redhat.com/security/cve/CVE-2026-26130" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26130</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453001" comment="aspnetcore-runtime-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453002" comment="aspnetcore-runtime-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453003" comment="aspnetcore-runtime-dbg-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453004" comment="aspnetcore-runtime-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453005" comment="aspnetcore-targeting-pack-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453006" comment="aspnetcore-targeting-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453007" comment="dotnet-apphost-pack-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453008" comment="dotnet-apphost-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453009" comment="dotnet-host is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601010" comment="dotnet-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453010" comment="dotnet-hostfxr-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453011" comment="dotnet-hostfxr-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453012" comment="dotnet-runtime-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453013" comment="dotnet-runtime-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453014" comment="dotnet-runtime-dbg-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453015" comment="dotnet-runtime-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453016" comment="dotnet-sdk-10.0 is earlier than 0:10.0.104-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453017" comment="dotnet-sdk-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453018" comment="dotnet-sdk-aot-10.0 is earlier than 0:10.0.104-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453019" comment="dotnet-sdk-aot-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453020" comment="dotnet-sdk-dbg-10.0 is earlier than 0:10.0.104-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453021" comment="dotnet-sdk-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453022" comment="dotnet-targeting-pack-10.0 is earlier than 0:10.0.4-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453023" comment="dotnet-targeting-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453024" comment="dotnet-templates-10.0 is earlier than 0:10.0.104-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453025" comment="dotnet-templates-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453026" comment="dotnet-sdk-10.0-source-built-artifacts is earlier than 0:10.0.104-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453027" comment="dotnet-sdk-10.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262719" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2719: gnupg2 security update (Important)</title>
        <reference ref_id="CVE-2026-24882" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24882"/>
        <reference ref_id="RHSA-2026:2719" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2719"/>
        <reference ref_id="ALSA-2026:2719" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2719.html"/>
        <description>The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and creating digital signatures, compliant with OpenPGP and S/MIME standards.  

Security Fix(es):  

  * GnuPG: GnuPG: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution (CVE-2026-24882)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-16"/>
          <updated date="2026-02-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2433464" id="2433464"></bugzilla>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2026-24882" impact="Important" cwe="CWE-121" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-24882</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262719001" comment="gnupg2 is earlier than 0:2.4.5-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260697002" comment="gnupg2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262719002" comment="gnupg2-smime is earlier than 0:2.4.5-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260697004" comment="gnupg2-smime is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262438" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2438: pcs security update (Important)</title>
        <reference ref_id="CVE-2025-13465" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13465"/>
        <reference ref_id="RHSA-2026:2438" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2438"/>
        <reference ref_id="ALSA-2026:2438" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2438.html"/>
        <description>The pcs packages provide a command-line configuration system for the Pacemaker and Corosync utilities.  

Security Fix(es):  

  * lodash: prototype pollution in _.unset and _.omit functions (CVE-2025-13465)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-10"/>
          <updated date="2026-02-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431740" id="2431740"></bugzilla>
          <cve public="20260121" href="https://access.redhat.com/security/cve/CVE-2025-13465" impact="Important" cwe="CWE-1321" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2025-13465</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262438001" comment="pcs is earlier than 0:0.12.1-1.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036004" comment="pcs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262438002" comment="pcs-snmp is earlier than 0:0.12.1-1.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036002" comment="pcs-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262438003" comment="cockpit-ha-cluster is earlier than 0:0.12.1-1.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521036006" comment="cockpit-ha-cluster is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264451" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4451: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2026-26130" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26130"/>
        <reference ref_id="RHSA-2026:4451" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4451"/>
        <reference ref_id="ALSA-2026:4451" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4451.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.125 and .NET Runtime 8.0.25.Security Fix(es):  

  * asp.net: ASP.NET Core: Denial of Service via uncontrolled resource allocation (CVE-2026-26130)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-12"/>
          <updated date="2026-03-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2446134" id="2446134"></bugzilla>
          <cve public="20260310" href="https://access.redhat.com/security/cve/CVE-2026-26130" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26130</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451001" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451002" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451003" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451004" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451005" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451006" comment="dotnet-runtime-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451007" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451008" comment="dotnet-sdk-8.0 is earlier than 0:8.0.125-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451009" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.125-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451010" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.25-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451011" comment="dotnet-templates-8.0 is earlier than 0:8.0.125-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264451012" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.125-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262282" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2282: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38403" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38403"/>
        <reference ref_id="CVE-2025-38415" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38415"/>
        <reference ref_id="CVE-2025-38730" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38730"/>
        <reference ref_id="CVE-2025-39933" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39933"/>
        <reference ref_id="CVE-2025-40133" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40133"/>
        <reference ref_id="CVE-2025-40304" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40304"/>
        <reference ref_id="CVE-2025-40322" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40322"/>
        <reference ref_id="CVE-2025-68811" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68811"/>
        <reference ref_id="RHSA-2026:2282" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2282"/>
        <reference ref_id="ALSA-2026:2282" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2282.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Memory corruption in Squashfs due to incorrect block size calculation (CVE-2025-38415)
  * kernel: vsock/vmci: Clear the vmci transport packet properly when initializing it (CVE-2025-38403)
  * kernel: Linux kernel: Data corruption and system instability due to improper io_uring/net buffer handling (CVE-2025-38730)
  * kernel: smb: client: let recv_done verify data_offset, data_length and remaining_data_length (CVE-2025-39933)
  * kernel: mptcp: Use __sk_dst_get() and dst_dev_rcu() in mptcp_active_enable() (CVE-2025-40133)
  * kernel: Linux kernel: Out-of-bounds write in fbdev can lead to privilege escalation, information disclosure, or denial of service. (CVE-2025-40304)
  * kernel: Linux kernel: Information disclosure and denial of service via out-of-bounds read in font glyph handling (CVE-2025-40322)
  * kernel: svcrdma: use rc_pageoff for memcpy byte offset (CVE-2025-68811)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-09"/>
          <updated date="2026-02-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2383404" id="2383404"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383421" id="2383421"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2393191" id="2393191"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2401432" id="2401432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414465" id="2414465"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419870" id="2419870"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419902" id="2419902"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429116" id="2429116"></bugzilla>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38403" impact="Moderate" cwe="CWE-909" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-38403</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38415" impact="Moderate" cwe="CWE-252" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-38415</cve>
          <cve public="20250904" href="https://access.redhat.com/security/cve/CVE-2025-38730" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-38730</cve>
          <cve public="20251004" href="https://access.redhat.com/security/cve/CVE-2025-39933" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39933</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40133" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40133</cve>
          <cve public="20251208" href="https://access.redhat.com/security/cve/CVE-2025-40304" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-40304</cve>
          <cve public="20251208" href="https://access.redhat.com/security/cve/CVE-2025-40322" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-40322</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2025-68811" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H">CVE-2025-68811</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282001" comment="kernel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282002" comment="kernel-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282003" comment="kernel-debug is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282004" comment="kernel-debug-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282011" comment="kernel-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282013" comment="kernel-headers is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282014" comment="kernel-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282015" comment="kernel-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282018" comment="kernel-rt is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282019" comment="kernel-rt-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282030" comment="kernel-tools is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282034" comment="perf is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282035" comment="python3-perf is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282036" comment="rtla is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282037" comment="rv is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282045" comment="kernel-64k is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282046" comment="kernel-64k-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282073" comment="libperf is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262282075" comment="kernel-doc is earlier than 0:6.12.0-124.35.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264450" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4450: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2026-26127" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26127"/>
        <reference ref_id="CVE-2026-26130" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26130"/>
        <reference ref_id="RHSA-2026:4450" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4450"/>
        <reference ref_id="ALSA-2026:4450" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4450.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.115 and .NET Runtime 9.0.14.Security Fix(es):  

  * .net: .NET: Denial of Service via out-of-bounds read (CVE-2026-26127)
  * asp.net: ASP.NET Core: Denial of Service via uncontrolled resource allocation (CVE-2026-26130)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-12"/>
          <updated date="2026-03-12"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2446098" id="2446098"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2446134" id="2446134"></bugzilla>
          <cve public="20260310" href="https://access.redhat.com/security/cve/CVE-2026-26127" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26127</cve>
          <cve public="20260310" href="https://access.redhat.com/security/cve/CVE-2026-26130" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26130</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450005" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450006" comment="dotnet-runtime-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450007" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450008" comment="dotnet-sdk-9.0 is earlier than 0:9.0.115-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450009" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.115-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450010" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.115-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450011" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.14-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450012" comment="dotnet-templates-9.0 is earlier than 0:9.0.115-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450013" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.115-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264450014" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.115-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202611389" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:11389: vim security update (Important)</title>
        <reference ref_id="CVE-2026-34982" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34982"/>
        <reference ref_id="RHSA-2026:11389" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:11389"/>
        <reference ref_id="ALSA-2026:11389" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-11389.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: arbitrary command execution via modeline sandbox bypass (CVE-2026-34982)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-28"/>
          <updated date="2026-04-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2455400" id="2455400"></bugzilla>
          <cve public="20260406" href="https://access.redhat.com/security/cve/CVE-2026-34982" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N">CVE-2026-34982</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389001" comment="vim-X11 is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389002" comment="vim-common is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389003" comment="vim-enhanced is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389004" comment="vim-minimal is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389005" comment="xxd is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389006" comment="vim-data is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611389007" comment="vim-filesystem is earlier than 2:9.1.083-6.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262914" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2914: grafana security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61728" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61728"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="CVE-2026-21721" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21721"/>
        <reference ref_id="RHSA-2026:2914" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2914"/>
        <reference ref_id="ALSA-2026:2914" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2914.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * grafana/grafana/pkg/services/dashboards: Grafana Dashboard Permissions Scope Bypass Enables Cross?Dashboard Privilege Escalation (CVE-2026-21721)
  * golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-18"/>
          <updated date="2026-02-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2433242" id="2433242"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434431" id="2434431"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61728" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61728</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
          <cve public="20260127" href="https://access.redhat.com/security/cve/CVE-2026-21721" impact="Important" cwe="CWE-639" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2026-21721</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262914001" comment="grafana is earlier than 0:10.2.6-22.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262914002" comment="grafana-selinux is earlier than 0:10.2.6-22.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262721" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2721: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2023-53034" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2023-53034"/>
        <reference ref_id="CVE-2025-38172" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38172"/>
        <reference ref_id="CVE-2025-40064" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40064"/>
        <reference ref_id="CVE-2025-40141" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40141"/>
        <reference ref_id="CVE-2025-40269" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40269"/>
        <reference ref_id="CVE-2025-68349" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68349"/>
        <reference ref_id="CVE-2026-22998" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22998"/>
        <reference ref_id="RHSA-2026:2721" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2721"/>
        <reference ref_id="ALSA-2026:2721" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2721.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ntb_hw_switchtec: Fix shift-out-of-bounds in switchtec_ntb_mw_set_trans (CVE-2023-53034)
  * kernel: Linux kernel erofs: Use-After-Free due to device type mismatch (CVE-2025-38172)
  * kernel: smc: Fix use-after-free in __pnet_find_base_ndev() (CVE-2025-40064)
  * kernel: Bluetooth: ISO: Fix possible UAF on iso_conn_free (CVE-2025-40141)
  * kernel: Linux kernel ALSA USB audio driver: Buffer overflow leading to information disclosure and denial of service (CVE-2025-40269)
  * kernel: NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid (CVE-2025-68349)
  * kernel: nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec (CVE-2026-22998)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-16"/>
          <updated date="2026-02-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2360239" id="2360239"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376072" id="2376072"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406747" id="2406747"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414522" id="2414522"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419919" id="2419919"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2424880" id="2424880"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2432671" id="2432671"></bugzilla>
          <cve public="20250416" href="https://access.redhat.com/security/cve/CVE-2023-53034" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H">CVE-2023-53034</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38172" impact="Moderate" cwe="CWE-390" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-38172</cve>
          <cve public="20251028" href="https://access.redhat.com/security/cve/CVE-2025-40064" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2025-40064</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40141" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-40141</cve>
          <cve public="20251206" href="https://access.redhat.com/security/cve/CVE-2025-40269" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-40269</cve>
          <cve public="20251224" href="https://access.redhat.com/security/cve/CVE-2025-68349" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-68349</cve>
          <cve public="20260125" href="https://access.redhat.com/security/cve/CVE-2026-22998" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2026-22998</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721001" comment="kernel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721002" comment="kernel-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721003" comment="kernel-debug is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721004" comment="kernel-debug-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721011" comment="kernel-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721013" comment="kernel-headers is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721014" comment="kernel-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721015" comment="kernel-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721018" comment="kernel-rt is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721019" comment="kernel-rt-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721030" comment="kernel-tools is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721034" comment="perf is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721035" comment="python3-perf is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721036" comment="rtla is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721037" comment="rv is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721045" comment="kernel-64k is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721046" comment="kernel-64k-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721073" comment="libperf is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20262721075" comment="kernel-doc is earlier than 0:6.12.0-124.38.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263361" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3361: firefox security update (Important)</title>
        <reference ref_id="CVE-2026-2447" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2447"/>
        <reference ref_id="CVE-2026-2757" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2757"/>
        <reference ref_id="CVE-2026-2758" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2758"/>
        <reference ref_id="CVE-2026-2759" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2759"/>
        <reference ref_id="CVE-2026-2760" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2760"/>
        <reference ref_id="CVE-2026-2761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2761"/>
        <reference ref_id="CVE-2026-2762" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2762"/>
        <reference ref_id="CVE-2026-2763" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2763"/>
        <reference ref_id="CVE-2026-2764" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2764"/>
        <reference ref_id="CVE-2026-2765" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2765"/>
        <reference ref_id="CVE-2026-2766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2766"/>
        <reference ref_id="CVE-2026-2767" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2767"/>
        <reference ref_id="CVE-2026-2768" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2768"/>
        <reference ref_id="CVE-2026-2769" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2769"/>
        <reference ref_id="CVE-2026-2770" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2770"/>
        <reference ref_id="CVE-2026-2771" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2771"/>
        <reference ref_id="CVE-2026-2772" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2772"/>
        <reference ref_id="CVE-2026-2773" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2773"/>
        <reference ref_id="CVE-2026-2774" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2774"/>
        <reference ref_id="CVE-2026-2775" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2775"/>
        <reference ref_id="CVE-2026-2776" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2776"/>
        <reference ref_id="CVE-2026-2777" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2777"/>
        <reference ref_id="CVE-2026-2778" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2778"/>
        <reference ref_id="CVE-2026-2779" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2779"/>
        <reference ref_id="CVE-2026-2780" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2780"/>
        <reference ref_id="CVE-2026-2781" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2781"/>
        <reference ref_id="CVE-2026-2782" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2782"/>
        <reference ref_id="CVE-2026-2783" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2783"/>
        <reference ref_id="CVE-2026-2784" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2784"/>
        <reference ref_id="CVE-2026-2785" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2785"/>
        <reference ref_id="CVE-2026-2786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2786"/>
        <reference ref_id="CVE-2026-2787" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2787"/>
        <reference ref_id="CVE-2026-2788" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2788"/>
        <reference ref_id="CVE-2026-2789" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2789"/>
        <reference ref_id="CVE-2026-2790" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2790"/>
        <reference ref_id="CVE-2026-2791" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2791"/>
        <reference ref_id="CVE-2026-2792" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2792"/>
        <reference ref_id="CVE-2026-2793" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2793"/>
        <reference ref_id="RHSA-2026:3361" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3361"/>
        <reference ref_id="ALSA-2026:3361" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3361.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * libvpx: Heap buffer overflow in libvpx (CVE-2026-2447)
  * firefox: Invalid pointer in the JavaScript Engine component (CVE-2026-2785)
  * firefox: Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 (CVE-2026-2793)
  * firefox: Undefined behavior in the DOM: Core &amp; HTML component (CVE-2026-2771)
  * firefox: Integer overflow in the Audio/Video component (CVE-2026-2774)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software (CVE-2026-2776)
  * firefox: Integer overflow in the Libraries component in NSS (CVE-2026-2781)
  * firefox: Use-after-free in the JavaScript Engine: JIT component (CVE-2026-2766)
  * firefox: Use-after-free in the Storage: IndexedDB component (CVE-2026-2769)
  * firefox: Use-after-free in the DOM: Window and Location component (CVE-2026-2787)
  * firefox: Sandbox escape in the Storage: IndexedDB component (CVE-2026-2768)
  * firefox: Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-2783)
  * firefox: Incorrect boundary conditions in the Audio/Video: GMP component (CVE-2026-2788)
  * firefox: Mitigation bypass in the DOM: Security component (CVE-2026-2784)
  * firefox: Incorrect boundary conditions in the Graphics: ImageLib component (CVE-2026-2759)
  * firefox: Integer overflow in the JavaScript: Standard Library component (CVE-2026-2762)
  * firefox: Sandbox escape in the Graphics: WebRender component (CVE-2026-2761)
  * firefox: Privilege escalation in the Messaging System component (CVE-2026-2777)
  * firefox: Same-origin policy bypass in the Networking: JAR component (CVE-2026-2790)
  * firefox: Mitigation bypass in the DOM: HTML Parser component (CVE-2026-2775)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-2763)
  * firefox: Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 (CVE-2026-2792)
  * firefox: Incorrect boundary conditions in the Web Audio component (CVE-2026-2773)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-2786)
  * firefox: Use-after-free in the Graphics: ImageLib component (CVE-2026-2789)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC: Audio/Video component (CVE-2026-2757)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component (CVE-2026-2760)
  * firefox: Use-after-free in the Audio/Video: Playback component (CVE-2026-2772)
  * firefox: Incorrect boundary conditions in the Networking: JAR component (CVE-2026-2779)
  * firefox: Use-after-free in the JavaScript: WebAssembly component (CVE-2026-2767)
  * firefox: JIT miscompilation, use-after-free in the JavaScript Engine: JIT component (CVE-2026-2764)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2026-2782)
  * firefox: Use-after-free in the JavaScript Engine component (CVE-2026-2765)
  * firefox: Privilege escalation in the Netmonitor component (CVE-2026-2780)
  * firefox: Sandbox escape due to incorrect boundary conditions in the DOM: Core &amp; HTML component (CVE-2026-2778)
  * firefox: Use-after-free in the JavaScript: GC component (CVE-2026-2758)
  * firefox: Mitigation bypass in the Networking: Cache component (CVE-2026-2791)
  * firefox: Use-after-free in the DOM: Bindings (WebIDL) component (CVE-2026-2770)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-25"/>
          <updated date="2026-02-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2440219" id="2440219"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442284" id="2442284"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442287" id="2442287"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442288" id="2442288"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442290" id="2442290"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442291" id="2442291"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442292" id="2442292"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442294" id="2442294"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442295" id="2442295"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442297" id="2442297"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442298" id="2442298"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442300" id="2442300"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442302" id="2442302"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442304" id="2442304"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442307" id="2442307"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442308" id="2442308"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442309" id="2442309"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442312" id="2442312"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442313" id="2442313"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442314" id="2442314"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442316" id="2442316"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442318" id="2442318"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442319" id="2442319"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442320" id="2442320"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442322" id="2442322"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442324" id="2442324"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442325" id="2442325"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442326" id="2442326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442327" id="2442327"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442328" id="2442328"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442329" id="2442329"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442331" id="2442331"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442333" id="2442333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442334" id="2442334"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442335" id="2442335"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442337" id="2442337"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442342" id="2442342"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442343" id="2442343"></bugzilla>
          <cve public="20260216" href="https://access.redhat.com/security/cve/CVE-2026-2447" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2447</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2757" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2757</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2758" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2758</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2759" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2759</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2760" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2760</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2761" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2761</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2762" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2762</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2763" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2763</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2764" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2764</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2765" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2765</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2766" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2766</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2767" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2767</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2768" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2768</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2769" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2769</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2770" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2770</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2771" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2771</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2772" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2772</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2773" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2773</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2774" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2774</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2775" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2775</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2776" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2776</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2777" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2777</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2778" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2778</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2779" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2779</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2780" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2780</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2781" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2781</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2782" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2782</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2783" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2783</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2784" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2784</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2785" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2785</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2786" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2786</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2787" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2787</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2788" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2788</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2789" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-2789</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2790" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-2790</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2791" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-2791</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2792" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2792</cve>
          <cve public="20260224" href="https://access.redhat.com/security/cve/CVE-2026-2793" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2793</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263361001" comment="firefox is earlier than 0:140.8.0-2.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20262230" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:2230: fontforge security update (Important)</title>
        <reference ref_id="CVE-2025-15269" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15269"/>
        <reference ref_id="CVE-2025-15275" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15275"/>
        <reference ref_id="CVE-2025-15279" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15279"/>
        <reference ref_id="RHSA-2026:2230" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:2230"/>
        <reference ref_id="ALSA-2026:2230" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-2230.html"/>
        <description>FontForge is a font editor for outline and bitmap fonts. It supports a range of font formats, including PostScript (ASCII and binary Type 1, some Type 3 and Type 0), TrueType, OpenType (Type2) and CID-keyed fonts.   

Security Fix(es):  

  * fontforge: FontForge: Remote Code Execution via heap-based buffer overflow in BMP file parsing (CVE-2025-15279)
  * fontforge: FontForge: Remote Code Execution via Use-After-Free in SFD file parsing (CVE-2025-15269)
  * fontforge: FontForge: Arbitrary code execution via SFD file parsing buffer overflow (CVE-2025-15275)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-09"/>
          <updated date="2026-02-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2426421" id="2426421"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2426423" id="2426423"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2426429" id="2426429"></bugzilla>
          <cve public="20251231" href="https://access.redhat.com/security/cve/CVE-2025-15269" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-15269</cve>
          <cve public="20251231" href="https://access.redhat.com/security/cve/CVE-2025-15275" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-15275</cve>
          <cve public="20251231" href="https://access.redhat.com/security/cve/CVE-2025-15279" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-15279</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20262230001" comment="fontforge is earlier than 0:20230101-14.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20262230002" comment="fontforge is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263094" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3094: protobuf security update (Important)</title>
        <reference ref_id="CVE-2026-0994" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0994"/>
        <reference ref_id="RHSA-2026:3094" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3094"/>
        <reference ref_id="ALSA-2026:3094" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3094.html"/>
        <description>The protobuf packages provide Protocol Buffers, Google's data interchange format. Protocol Buffers can encode structured data in an efficient yet extensible format, and provide a flexible, efficient, and automated mechanism for serializing structured data.  

Security Fix(es):  

  * python: protobuf: Protobuf: Denial of Service due to recursion depth bypass (CVE-2026-0994)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-23"/>
          <updated date="2026-02-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2432398" id="2432398"></bugzilla>
          <cve public="20260123" href="https://access.redhat.com/security/cve/CVE-2026-0994" impact="Important" cwe="CWE-674" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-0994</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094001" comment="protobuf is earlier than 0:3.19.6-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094002" comment="protobuf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094003" comment="protobuf-lite is earlier than 0:3.19.6-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094004" comment="protobuf-lite is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094005" comment="python3-protobuf is earlier than 0:3.19.6-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094006" comment="python3-protobuf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094007" comment="protobuf-compiler is earlier than 0:3.19.6-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094008" comment="protobuf-compiler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094009" comment="protobuf-devel is earlier than 0:3.19.6-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094010" comment="protobuf-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094011" comment="protobuf-lite-devel is earlier than 0:3.19.6-15.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263094012" comment="protobuf-lite-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264629" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4629: libvpx security update (Important)</title>
        <reference ref_id="CVE-2026-2447" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2447"/>
        <reference ref_id="RHSA-2026:4629" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4629"/>
        <reference ref_id="ALSA-2026:4629" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4629.html"/>
        <description>The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.  

Security Fix(es):  

  * libvpx: Heap buffer overflow in libvpx (CVE-2026-2447)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-16"/>
          <updated date="2026-03-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2440219" id="2440219"></bugzilla>
          <cve public="20260216" href="https://access.redhat.com/security/cve/CVE-2026-2447" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2447</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264629001" comment="libvpx is earlier than 0:1.14.1-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259120002" comment="libvpx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264629002" comment="libvpx-devel is earlier than 0:1.14.1-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259120004" comment="libvpx-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265931" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5931: firefox security update (Important)</title>
        <reference ref_id="CVE-2026-4684" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4684"/>
        <reference ref_id="CVE-2026-4685" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4685"/>
        <reference ref_id="CVE-2026-4686" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4686"/>
        <reference ref_id="CVE-2026-4687" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4687"/>
        <reference ref_id="CVE-2026-4688" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4688"/>
        <reference ref_id="CVE-2026-4689" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4689"/>
        <reference ref_id="CVE-2026-4690" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4690"/>
        <reference ref_id="CVE-2026-4691" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4691"/>
        <reference ref_id="CVE-2026-4692" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4692"/>
        <reference ref_id="CVE-2026-4693" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4693"/>
        <reference ref_id="CVE-2026-4694" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4694"/>
        <reference ref_id="CVE-2026-4695" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4695"/>
        <reference ref_id="CVE-2026-4696" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4696"/>
        <reference ref_id="CVE-2026-4697" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4697"/>
        <reference ref_id="CVE-2026-4698" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4698"/>
        <reference ref_id="CVE-2026-4699" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4699"/>
        <reference ref_id="CVE-2026-4700" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4700"/>
        <reference ref_id="CVE-2026-4701" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4701"/>
        <reference ref_id="CVE-2026-4702" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4702"/>
        <reference ref_id="CVE-2026-4704" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4704"/>
        <reference ref_id="CVE-2026-4705" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4705"/>
        <reference ref_id="CVE-2026-4706" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4706"/>
        <reference ref_id="CVE-2026-4707" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4707"/>
        <reference ref_id="CVE-2026-4708" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4708"/>
        <reference ref_id="CVE-2026-4709" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4709"/>
        <reference ref_id="CVE-2026-4710" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4710"/>
        <reference ref_id="CVE-2026-4711" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4711"/>
        <reference ref_id="CVE-2026-4712" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4712"/>
        <reference ref_id="CVE-2026-4713" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4713"/>
        <reference ref_id="CVE-2026-4714" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4714"/>
        <reference ref_id="CVE-2026-4715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4715"/>
        <reference ref_id="CVE-2026-4716" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4716"/>
        <reference ref_id="CVE-2026-4717" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4717"/>
        <reference ref_id="CVE-2026-4718" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4718"/>
        <reference ref_id="CVE-2026-4719" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4719"/>
        <reference ref_id="CVE-2026-4720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4720"/>
        <reference ref_id="CVE-2026-4721" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4721"/>
        <reference ref_id="RHSA-2026:5931" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5931"/>
        <reference ref_id="ALSA-2026:5931" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5931.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Use-after-free in the JavaScript Engine component (CVE-2026-4701)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 (CVE-2026-4721)
  * firefox: thunderbird: Privilege escalation in the Netmonitor component (CVE-2026-4717)
  * firefox: thunderbird: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-4688)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4706)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: Web Codecs component (CVE-2026-4695)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component (CVE-2026-4689)
  * firefox: thunderbird: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-4698)
  * firefox: thunderbird: Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component (CVE-2026-4716)
  * firefox: thunderbird: Race condition, use-after-free in the Graphics: WebRender component (CVE-2026-4684)
  * firefox: thunderbird: Undefined behavior in the WebRTC: Signaling component (CVE-2026-4705)
  * firefox: thunderbird: Uninitialized memory in the Graphics: Canvas2D component (CVE-2026-4715)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4685)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video component (CVE-2026-4714)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: GMP component (CVE-2026-4709)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video component (CVE-2026-4710)
  * firefox: thunderbird: Information disclosure in the Widget: Cocoa component (CVE-2026-4712)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: Web Codecs component (CVE-2026-4697)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics component (CVE-2026-4713)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component (CVE-2026-4690)
  * firefox: thunderbird: Use-after-free in the Widget: Cocoa component (CVE-2026-4711)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4686)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics component (CVE-2026-4708)
  * firefox: thunderbird: Use-after-free in the CSS Parsing and Computation component (CVE-2026-4691)
  * firefox: thunderbird: Incorrect boundary conditions in the Layout: Text and Fonts component (CVE-2026-4699)
  * firefox: thunderbird: Use-after-free in the Layout: Text and Fonts component (CVE-2026-4696)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: Playback component (CVE-2026-4693)
  * firefox: thunderbird: Undefined behavior in the WebRTC: Signaling component (CVE-2026-4718)
  * firefox: thunderbird: JIT miscompilation in the JavaScript Engine component (CVE-2026-4702)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Text component (CVE-2026-4719)
  * firefox: thunderbird: Incorrect boundary conditions, integer overflow in the Graphics component (CVE-2026-4694)
  * firefox: thunderbird: Sandbox escape in the Responsive Design Mode component (CVE-2026-4692)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 (CVE-2026-4720)
  * firefox: thunderbird: Mitigation bypass in the Networking: HTTP component (CVE-2026-4700)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4707)
  * firefox: thunderbird: Denial-of-service in the WebRTC: Signaling component (CVE-2026-4704)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Telemetry component (CVE-2026-4687)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-26"/>
          <updated date="2026-03-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2450710" id="2450710"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450711" id="2450711"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450712" id="2450712"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450713" id="2450713"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450714" id="2450714"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450715" id="2450715"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450718" id="2450718"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450719" id="2450719"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450720" id="2450720"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450721" id="2450721"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450722" id="2450722"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450723" id="2450723"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450724" id="2450724"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450725" id="2450725"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450726" id="2450726"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450727" id="2450727"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450728" id="2450728"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450729" id="2450729"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450730" id="2450730"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450732" id="2450732"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450733" id="2450733"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450734" id="2450734"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450735" id="2450735"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450738" id="2450738"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450739" id="2450739"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450740" id="2450740"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450741" id="2450741"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450742" id="2450742"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450744" id="2450744"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450746" id="2450746"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450747" id="2450747"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450748" id="2450748"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450751" id="2450751"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450752" id="2450752"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450755" id="2450755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450756" id="2450756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450757" id="2450757"></bugzilla>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4684" impact="Important" cwe="CWE-364" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4684</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4685" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4685</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4686" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4686</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4687" impact="Important" cwe="CWE-501" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4687</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4688" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4688</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4689" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4689</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4690" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4690</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4691" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4691</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4692" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4692</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4693" impact="Important" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4693</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4694" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4694</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4695" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4695</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4696" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4696</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4697" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4697</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4698" impact="Important" cwe="CWE-733" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4698</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4699" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4699</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4700" impact="Important" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4700</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4701" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4701</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4702" impact="Moderate" cwe="CWE-733" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4702</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4704" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4704</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4705" impact="Moderate" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-4705</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4706" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4706</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4707" impact="Moderate" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4707</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4708" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4708</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4709" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4709</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4710" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4710</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4711" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4711</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4712" impact="Moderate" cwe="CWE-359" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-4712</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4713" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4713</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4714" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-4714</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4715" impact="Moderate" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-4715</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4716" impact="Moderate" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4716</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4717" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4717</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4718" impact="Low" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-4718</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4719" impact="Low" cwe="CWE-805" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-4719</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4720" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4720</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4721" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4721</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20265931001" comment="firefox is earlier than 0:140.9.0-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263297" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3297: buildah security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3297" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3297"/>
        <reference ref_id="ALSA-2026:3297" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3297.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-25"/>
          <updated date="2026-02-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263297001" comment="buildah-tests is earlier than 2:1.41.8-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263297002" comment="buildah is earlier than 2:1.41.8-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264705" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4705: nginx security update (Moderate)</title>
        <reference ref_id="CVE-2026-1642" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1642"/>
        <reference ref_id="RHSA-2026:4705" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4705"/>
        <reference ref_id="ALSA-2026:4705" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4705.html"/>
        <description>nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.   

Security Fix(es):  

  * nginx: NGINX: Data injection via man-in-the-middle attack on TLS proxied connections (CVE-2026-1642)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-17"/>
          <updated date="2026-03-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2436738" id="2436738"></bugzilla>
          <cve public="20260204" href="https://access.redhat.com/security/cve/CVE-2026-1642" impact="Moderate" cwe="CWE-349" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-1642</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705001" comment="nginx is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705002" comment="nginx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705003" comment="nginx-core is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705004" comment="nginx-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705005" comment="nginx-mod-http-image-filter is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705006" comment="nginx-mod-http-image-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705007" comment="nginx-mod-http-perl is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705008" comment="nginx-mod-http-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705009" comment="nginx-mod-http-xslt-filter is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705010" comment="nginx-mod-http-xslt-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705011" comment="nginx-mod-mail is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705012" comment="nginx-mod-mail is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705013" comment="nginx-mod-stream is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705014" comment="nginx-mod-stream is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705015" comment="nginx-mod-devel is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705016" comment="nginx-mod-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705017" comment="nginx-all-modules is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705018" comment="nginx-all-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705019" comment="nginx-filesystem is earlier than 2:1.26.3-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705020" comment="nginx-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264723" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4723: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2026-23010" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23010"/>
        <reference ref_id="RHSA-2026:4723" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4723"/>
        <reference ref_id="ALSA-2026:4723" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4723.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Use-after-free in IPv6 address deletion may lead to a denial of service (CVE-2026-23010)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-17"/>
          <updated date="2026-03-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2432676" id="2432676"></bugzilla>
          <cve public="20260125" href="https://access.redhat.com/security/cve/CVE-2026-23010" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-23010</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723001" comment="kernel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723002" comment="kernel-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723003" comment="kernel-debug is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723004" comment="kernel-debug-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723011" comment="kernel-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723013" comment="kernel-headers is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723014" comment="kernel-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723015" comment="kernel-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723018" comment="kernel-rt is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723019" comment="kernel-rt-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723030" comment="kernel-tools is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723034" comment="perf is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723035" comment="python3-perf is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723036" comment="rtla is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723037" comment="rv is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723045" comment="kernel-64k is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723046" comment="kernel-64k-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723073" comment="libperf is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264723075" comment="kernel-doc is earlier than 0:6.12.0-124.45.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263208" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3208: 389-ds-base security update (Moderate)</title>
        <reference ref_id="CVE-2025-14905" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14905"/>
        <reference ref_id="RHSA-2026:3208" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3208"/>
        <reference ref_id="ALSA-2026:3208" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3208.html"/>
        <description>389 Directory Server is an LDAP version 3 (LDAPv3) compliant server. The base packages include the Lightweight Directory Access Protocol (LDAP) server and command-line utilities for server administration.  

Security Fix(es):  

  * 389-ds-base: 389-ds-base: Remote Code Execution and Denial of Service via heap buffer overflow (CVE-2025-14905)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-24"/>
          <updated date="2026-02-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2423624" id="2423624"></bugzilla>
          <cve public="20260223" href="https://access.redhat.com/security/cve/CVE-2025-14905" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-14905</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208001" comment="389-ds-base is earlier than 0:3.1.3-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208002" comment="389-ds-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208003" comment="389-ds-base-libs is earlier than 0:3.1.3-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208004" comment="389-ds-base-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208005" comment="389-ds-base-snmp is earlier than 0:3.1.3-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208006" comment="389-ds-base-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208007" comment="389-ds-base-bdb is earlier than 0:3.1.3-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208008" comment="389-ds-base-bdb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208009" comment="389-ds-base-devel is earlier than 0:3.1.3-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208010" comment="389-ds-base-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208011" comment="python3-lib389 is earlier than 0:3.1.3-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208012" comment="python3-lib389 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263551" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3551: libpng security update (Important)</title>
        <reference ref_id="CVE-2026-22695" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22695"/>
        <reference ref_id="CVE-2026-22801" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22801"/>
        <reference ref_id="CVE-2026-25646" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25646"/>
        <reference ref_id="RHSA-2026:3551" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3551"/>
        <reference ref_id="ALSA-2026:3551" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3551.html"/>
        <description>The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files.  

Security Fix(es):  

  * libpng: libpng: Information disclosure and denial of service via integer truncation in simplified write API (CVE-2026-22801)
  * libpng: libpng: Denial of service and information disclosure via heap buffer over-read in png_image_finish_read (CVE-2026-22695)
  * libpng: LIBPNG has a heap buffer overflow in png_set_quantize (CVE-2026-25646)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-02"/>
          <updated date="2026-03-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2428824" id="2428824"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2428825" id="2428825"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438542" id="2438542"></bugzilla>
          <cve public="20260112" href="https://access.redhat.com/security/cve/CVE-2026-22695" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2026-22695</cve>
          <cve public="20260112" href="https://access.redhat.com/security/cve/CVE-2026-22801" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-22801</cve>
          <cve public="20260210" href="https://access.redhat.com/security/cve/CVE-2026-25646" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2026-25646</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263551001" comment="libpng is earlier than 2:1.6.40-8.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237002" comment="libpng is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263551002" comment="libpng-devel is earlier than 2:1.6.40-8.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237004" comment="libpng-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263092" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3092: golang-github-openprinting-ipp-usb security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3092" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3092"/>
        <reference ref_id="ALSA-2026:3092" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3092.html"/>
        <description>HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables  
driverless support for USB devices capable of using IPP-over-USB protocol.  

Security Fix(es):  

  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-23"/>
          <updated date="2026-02-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263092001" comment="ipp-usb is earlier than 0:0.9.27-5.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259156002" comment="ipp-usb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202611352" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:11352: xorg-x11-server-Xwayland security update (Important)</title>
        <reference ref_id="CVE-2026-33999" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33999"/>
        <reference ref_id="CVE-2026-34001" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34001"/>
        <reference ref_id="CVE-2026-34003" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34003"/>
        <reference ref_id="RHSA-2026:11352" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:11352"/>
        <reference ref_id="ALSA-2026:11352" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-11352.html"/>
        <description>Xwayland is an X server for running X clients under Wayland.  

Security Fix(es):  

  * xorg: xwayland: X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling (CVE-2026-33999)
  * xorg: xwayland: X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption (CVE-2026-34001)
  * xorg: xwayland: X.Org X server: Information exposure and denial of service via out-of-bounds memory access (CVE-2026-34003)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-28"/>
          <updated date="2026-04-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451106" id="2451106"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451109" id="2451109"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451113" id="2451113"></bugzilla>
          <cve public="20260423" href="https://access.redhat.com/security/cve/CVE-2026-33999" impact="Important" cwe="CWE-191" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-33999</cve>
          <cve public="20260423" href="https://access.redhat.com/security/cve/CVE-2026-34001" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-34001</cve>
          <cve public="20260423" href="https://access.redhat.com/security/cve/CVE-2026-34003" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-34003</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611352001" comment="xorg-x11-server-Xwayland is earlier than 0:24.1.5-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304002" comment="xorg-x11-server-Xwayland is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611352002" comment="xorg-x11-server-Xwayland-devel is earlier than 0:24.1.5-6.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259304004" comment="xorg-x11-server-Xwayland-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263068" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3068: freerdp security update (Important)</title>
        <reference ref_id="CVE-2026-22853" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22853"/>
        <reference ref_id="CVE-2026-22855" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22855"/>
        <reference ref_id="CVE-2026-22858" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22858"/>
        <reference ref_id="CVE-2026-22859" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22859"/>
        <reference ref_id="CVE-2026-24678" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24678"/>
        <reference ref_id="RHSA-2026:3068" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3068"/>
        <reference ref_id="ALSA-2026:3068" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3068.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22855)
  * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22853)
  * freerdp: FreeRDP global-buffer-overflow (CVE-2026-22858)
  * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22859)
  * freerdp: FreeRDP: Denial of Service via use after free in ecam_channel_write (CVE-2026-24678)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-23"/>
          <updated date="2026-02-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2429645" id="2429645"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429647" id="2429647"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429649" id="2429649"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429653" id="2429653"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438197" id="2438197"></bugzilla>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22853" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-22853</cve>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22855" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H">CVE-2026-22855</cve>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22858" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H">CVE-2026-22858</cve>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22859" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H">CVE-2026-22859</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24678" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24678</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263068001" comment="freerdp is earlier than 2:3.10.3-5.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263068002" comment="freerdp-libs is earlier than 2:3.10.3-5.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263068003" comment="libwinpr is earlier than 2:3.10.3-5.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263068004" comment="freerdp-devel is earlier than 2:3.10.3-5.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263068005" comment="freerdp-server is earlier than 2:3.10.3-5.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263068006" comment="libwinpr-devel is earlier than 2:3.10.3-5.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264713" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4713: python3.12 security update (Moderate)</title>
        <reference ref_id="CVE-2025-15366" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15366"/>
        <reference ref_id="CVE-2025-15367" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15367"/>
        <reference ref_id="CVE-2026-0865" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-0865"/>
        <reference ref_id="CVE-2026-1299" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1299"/>
        <reference ref_id="RHSA-2026:4713" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4713"/>
        <reference ref_id="ALSA-2026:4713" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4713.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * cpython: wsgiref.headers.Headers allows header newline injection in Python (CVE-2026-0865)
  * cpython: IMAP command injection in user-controlled commands (CVE-2025-15366)
  * cpython: POP3 command injection in user-controlled commands (CVE-2025-15367)
  * cpython: email header injection due to unquoted newlines (CVE-2026-1299)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-17"/>
          <updated date="2026-03-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431367" id="2431367"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431368" id="2431368"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2431373" id="2431373"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2432437" id="2432437"></bugzilla>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-15366" impact="Moderate" cwe="CWE-77" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N">CVE-2025-15366</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2025-15367" impact="Moderate" cwe="CWE-77" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N">CVE-2025-15367</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-0865" impact="Moderate" cwe="CWE-74" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N">CVE-2026-0865</cve>
          <cve public="20260123" href="https://access.redhat.com/security/cve/CVE-2026-1299" impact="Moderate" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N">CVE-2026-1299</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713001" comment="python3 is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713002" comment="python3-devel is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713003" comment="python3-libs is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713004" comment="python3-tkinter is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713005" comment="python3-debug is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713006" comment="python3-idle is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713007" comment="python3-test is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264713008" comment="python-unversioned-command is earlier than 0:3.12.12-3.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263035" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3035: grafana-pcp security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3035" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3035"/>
        <reference ref_id="ALSA-2026:3035" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3035.html"/>
        <description>The Grafana plugin for Performance Co-Pilot includes datasources for scalable time series from pmseries and Redis, live PCP metrics and bpftrace scripts from pmdabpftrace, as well as several dashboards.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-23"/>
          <updated date="2026-02-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263035001" comment="grafana-pcp is earlier than 0:5.3.0-2.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258915002" comment="grafana-pcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263275" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3275: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38206" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38206"/>
        <reference ref_id="CVE-2025-40096" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40096"/>
        <reference ref_id="CVE-2025-40168" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40168"/>
        <reference ref_id="CVE-2025-68800" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68800"/>
        <reference ref_id="RHSA-2026:3275" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3275"/>
        <reference ref_id="ALSA-2026:3275" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3275.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Kernel: Double free vulnerability in exFAT filesystem can lead to denial of service (CVE-2025-38206)
  * kernel: drm/sched: Fix potential double free in drm_sched_job_add_resv_dependencies (CVE-2025-40096)
  * kernel: smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match() (CVE-2025-40168)
  * kernel: mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats (CVE-2025-68800)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-25"/>
          <updated date="2026-02-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2376377" id="2376377"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2407333" id="2407333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2414482" id="2414482"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429065" id="2429065"></bugzilla>
          <cve public="20250704" href="https://access.redhat.com/security/cve/CVE-2025-38206" impact="Moderate" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-38206</cve>
          <cve public="20251030" href="https://access.redhat.com/security/cve/CVE-2025-40096" impact="Moderate" cwe="CWE-415" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40096</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40168" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40168</cve>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2025-68800" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-68800</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275001" comment="kernel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275002" comment="kernel-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275003" comment="kernel-debug is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275004" comment="kernel-debug-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275009" comment="kernel-rt-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275010" comment="kernel-rt-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275011" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275012" comment="kernel-tools is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275013" comment="kernel-tools-libs is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275014" comment="kernel-uki-virt is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275015" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275016" comment="perf is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275017" comment="python3-perf is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275018" comment="rtla is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275019" comment="rv is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275020" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275021" comment="kernel-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275022" comment="kernel-devel-matched is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275023" comment="kernel-headers is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275024" comment="kernel-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275025" comment="kernel-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275026" comment="kernel-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275027" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275028" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275029" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275030" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275031" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275032" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275033" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275034" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275035" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275036" comment="kernel-rt is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275037" comment="kernel-rt-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275038" comment="kernel-rt-debug is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275039" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275040" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275041" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275042" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275043" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275044" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275045" comment="kernel-64k is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275046" comment="kernel-64k-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275073" comment="libperf is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263275075" comment="kernel-doc is earlier than 0:6.12.0-124.39.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264649" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4649: grub2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-61662" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61662"/>
        <reference ref_id="RHSA-2026:4649" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4649"/>
        <reference ref_id="ALSA-2026:4649" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4649.html"/>
        <description>The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices.  

Security Fix(es):  

  * grub2: Missing unregister call for gettext command may lead to use-after-free (CVE-2025-61662)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-16"/>
          <updated date="2026-03-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414683" id="2414683"></bugzilla>
          <cve public="20251118" href="https://access.redhat.com/security/cve/CVE-2025-61662" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-61662</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649001" comment="grub2-efi-x64 is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154002" comment="grub2-efi-x64 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649002" comment="grub2-efi-x64-cdboot is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154004" comment="grub2-efi-x64-cdboot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649003" comment="grub2-pc is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154006" comment="grub2-pc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649004" comment="grub2-tools is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154008" comment="grub2-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649005" comment="grub2-tools-efi is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154010" comment="grub2-tools-efi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649006" comment="grub2-tools-extra is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154012" comment="grub2-tools-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649007" comment="grub2-tools-minimal is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154014" comment="grub2-tools-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649008" comment="grub2-ppc64le is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154016" comment="grub2-ppc64le is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649009" comment="grub2-efi-aa64 is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154018" comment="grub2-efi-aa64 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649010" comment="grub2-efi-aa64-cdboot is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154020" comment="grub2-efi-aa64-cdboot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649011" comment="grub2-common is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154022" comment="grub2-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649012" comment="grub2-efi-aa64-modules is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154024" comment="grub2-efi-aa64-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649013" comment="grub2-efi-x64-modules is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154026" comment="grub2-efi-x64-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649014" comment="grub2-pc-modules is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154028" comment="grub2-pc-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264649015" comment="grub2-ppc64le-modules is earlier than 1:2.12-29.el10_1.2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516154030" comment="grub2-ppc64le-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263033" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3033: munge security update (Important)</title>
        <reference ref_id="CVE-2026-25506" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25506"/>
        <reference ref_id="RHSA-2026:3033" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3033"/>
        <reference ref_id="ALSA-2026:3033" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3033.html"/>
        <description>MUNGE (MUNGE Uid 'N' Gid Emporium) is an authentication service for creating and validating credentials. It is designed to be highly scalable for use in an HPC cluster environment. It allows a process to authenticate the UID and GID of another local or remote process within a group of hosts having common users and groups. These hosts form a security realm that is defined by a shared cryptographic key. Clients within this security realm can create and validate credentials without the use of root privileges, reserved ports, or platform-specific methods.  

Security Fix(es):  

  * MUNGE: MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery (CVE-2026-25506)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-23"/>
          <updated date="2026-02-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2438715" id="2438715"></bugzilla>
          <cve public="20260210" href="https://access.redhat.com/security/cve/CVE-2026-25506" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L">CVE-2026-25506</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263033001" comment="munge is earlier than 0:0.5.15-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263033002" comment="munge is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263033003" comment="munge-libs is earlier than 0:0.5.15-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263033004" comment="munge-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263033005" comment="munge-devel is earlier than 0:0.5.15-11.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263033006" comment="munge-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20264717" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:4717: opencryptoki security update (Moderate)</title>
        <reference ref_id="CVE-2026-23893" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23893"/>
        <reference ref_id="RHSA-2026:4717" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:4717"/>
        <reference ref_id="ALSA-2026:4717" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-4717.html"/>
        <description>The opencryptoki packages contain version 2.11 of the PKCS#11 API, implemented for IBM Cryptocards, such as IBM 4764 and 4765 crypto cards. These packages includes support for the IBM 4758 Cryptographic CoProcessor (with the PKCS#11 firmware loaded), the IBM eServer Cryptographic Accelerator (FC 4960 on IBM eServer System p), the IBM Crypto Express2 (FC 0863 or FC 0870 on IBM System z), and the IBM CP Assist for Cryptographic Function (FC 3863 on IBM System z). The opencryptoki packages also bring a software token implementation that can be used without any cryptographic hardware. These packages contain the Slot Daemon (pkcsslotd) and general utilities.  

Security Fix(es):  

  * openCryptoki: openCryptoki: Privilege Escalation or Data Exposure via Symlink Following (CVE-2026-23893)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-17"/>
          <updated date="2026-03-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431909" id="2431909"></bugzilla>
          <cve public="20260122" href="https://access.redhat.com/security/cve/CVE-2026-23893" impact="Moderate" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L">CVE-2026-23893</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20264717001" comment="opencryptoki-devel is earlier than 0:3.25.0-5.el10_1.2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20264717002" comment="opencryptoki-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263669" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3669: go-rpm-macros security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="RHSA-2026:3669" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3669"/>
        <reference ref_id="ALSA-2026:3669" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3669.html"/>
        <description>This package provides build-stage rpm automation to simplify the creation of Go language (golang) packages. It does not need to be included in the default build root: go-srpm-macros will pull it in for Go packages only.  

Security Fix(es):  

  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-03"/>
          <updated date="2026-03-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669001" comment="go-filesystem is earlier than 0:3.6.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669002" comment="go-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669003" comment="go-rpm-macros is earlier than 0:3.6.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669004" comment="go-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669005" comment="go-rpm-templates is earlier than 0:3.6.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669006" comment="go-rpm-templates is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669007" comment="go-srpm-macros is earlier than 0:3.6.0-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669008" comment="go-srpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263477" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3477: gnutls security update (Moderate)</title>
        <reference ref_id="CVE-2025-9820" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-9820"/>
        <reference ref_id="CVE-2025-14831" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14831"/>
        <reference ref_id="RHSA-2026:3477" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3477"/>
        <reference ref_id="ALSA-2026:3477" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3477.html"/>
        <description>The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS.  

Security Fix(es):  

  * gnutls: Stack-based Buffer Overflow in gnutls_pkcs11_token_init() Function (CVE-2025-9820)
  * gnutls: GnuTLS: Denial of Service via excessive resource consumption during certificate verification (CVE-2025-14831)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-02"/>
          <updated date="2026-03-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2392528" id="2392528"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2423177" id="2423177"></bugzilla>
          <cve public="20251118" href="https://access.redhat.com/security/cve/CVE-2025-9820" impact="Low" cwe="CWE-121" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-9820</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2025-14831" impact="Moderate" cwe="CWE-407" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-14831</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263477001" comment="gnutls is earlier than 0:3.8.10-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115002" comment="gnutls is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263477002" comment="gnutls-c++ is earlier than 0:3.8.10-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115004" comment="gnutls-c++ is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263477003" comment="gnutls-dane is earlier than 0:3.8.10-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115006" comment="gnutls-dane is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263477004" comment="gnutls-devel is earlier than 0:3.8.10-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115008" comment="gnutls-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263477005" comment="gnutls-fips is earlier than 0:3.8.10-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115010" comment="gnutls-fips is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263477006" comment="gnutls-utils is earlier than 0:3.8.10-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115012" comment="gnutls-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263354" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3354: python-pyasn1 security update (Important)</title>
        <reference ref_id="CVE-2026-23490" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23490"/>
        <reference ref_id="RHSA-2026:3354" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3354"/>
        <reference ref_id="ALSA-2026:3354" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3354.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * pyasn1: pyasn1: Denial of Service due to memory exhaustion from malformed RELATIVE-OID (CVE-2026-23490)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-25"/>
          <updated date="2026-02-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2430472" id="2430472"></bugzilla>
          <cve public="20260116" href="https://access.redhat.com/security/cve/CVE-2026-23490" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-23490</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263354001" comment="python3-pyasn1 is earlier than 0:0.6.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263354002" comment="python3-pyasn1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263354003" comment="python3-pyasn1-modules is earlier than 0:0.6.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263354004" comment="python3-pyasn1-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263343" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3343: skopeo security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3343" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3343"/>
        <reference ref_id="ALSA-2026:3343" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3343.html"/>
        <description>The skopeo command lets you inspect images from container image registries, get images and image layers, and use signatures to create and verify files.   

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-25"/>
          <updated date="2026-02-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263343001" comment="skopeo-tests is earlier than 2:1.20.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149004" comment="skopeo-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263343002" comment="skopeo is earlier than 2:1.20.0-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149002" comment="skopeo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263336" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3336: podman security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61728" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61728"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3336" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3336"/>
        <reference ref_id="ALSA-2026:3336" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3336.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-25"/>
          <updated date="2026-02-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434431" id="2434431"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61728" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61728</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263336001" comment="podman is earlier than 7:5.6.0-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263336002" comment="podman-remote is earlier than 7:5.6.0-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263336003" comment="podman-tests is earlier than 7:5.6.0-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263336004" comment="podman-docker is earlier than 7:5.6.0-12.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202610767" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:10767: firefox security update (Important)</title>
        <reference ref_id="CVE-2026-6746" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6746"/>
        <reference ref_id="CVE-2026-6747" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6747"/>
        <reference ref_id="CVE-2026-6748" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6748"/>
        <reference ref_id="CVE-2026-6749" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6749"/>
        <reference ref_id="CVE-2026-6750" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6750"/>
        <reference ref_id="CVE-2026-6751" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6751"/>
        <reference ref_id="CVE-2026-6752" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6752"/>
        <reference ref_id="CVE-2026-6753" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6753"/>
        <reference ref_id="CVE-2026-6754" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6754"/>
        <reference ref_id="CVE-2026-6757" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6757"/>
        <reference ref_id="CVE-2026-6759" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6759"/>
        <reference ref_id="CVE-2026-6761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6761"/>
        <reference ref_id="CVE-2026-6762" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6762"/>
        <reference ref_id="CVE-2026-6763" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6763"/>
        <reference ref_id="CVE-2026-6764" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6764"/>
        <reference ref_id="CVE-2026-6765" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6765"/>
        <reference ref_id="CVE-2026-6766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6766"/>
        <reference ref_id="CVE-2026-6767" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6767"/>
        <reference ref_id="CVE-2026-6769" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6769"/>
        <reference ref_id="CVE-2026-6770" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6770"/>
        <reference ref_id="CVE-2026-6771" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6771"/>
        <reference ref_id="CVE-2026-6772" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6772"/>
        <reference ref_id="CVE-2026-6776" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6776"/>
        <reference ref_id="CVE-2026-6785" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6785"/>
        <reference ref_id="CVE-2026-6786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6786"/>
        <reference ref_id="RHSA-2026:10767" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:10767"/>
        <reference ref_id="ALSA-2026:10767" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-10767.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Incorrect boundary conditions in the Libraries component in NSS (CVE-2026-6772)
  * firefox: thunderbird: Use-after-free in the JavaScript Engine component (CVE-2026-6754)
  * firefox: thunderbird: Spoofing issue in the DOM: Core &amp; HTML component (CVE-2026-6762)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC component (CVE-2026-6752)
  * firefox: thunderbird: Other issue in the Storage: IndexedDB component (CVE-2026-6770)
  * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-6757)
  * firefox: thunderbird: Other issue in the Libraries component in NSS (CVE-2026-6767)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 (CVE-2026-6786)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC component (CVE-2026-6753)
  * firefox: thunderbird: Use-after-free in the Widget: Cocoa component (CVE-2026-6759)
  * firefox: thunderbird: Use-after-free in the WebRTC component (CVE-2026-6747)
  * firefox: thunderbird: Information disclosure due to uninitialized memory in the Graphics: Canvas2D component (CVE-2026-6749)
  * firefox: thunderbird: Incorrect boundary conditions in the Libraries component in NSS (CVE-2026-6766)
  * firefox: thunderbird: Privilege escalation in the Networking component (CVE-2026-6761)
  * firefox: thunderbird: Mitigation bypass in the File Handling component (CVE-2026-6763)
  * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-6750)
  * firefox: thunderbird: Uninitialized memory in the Audio/Video: Web Codecs component (CVE-2026-6748)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 (CVE-2026-6785)
  * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-6771)
  * firefox: thunderbird: Incorrect boundary conditions in the DOM: Device Interfaces component (CVE-2026-6764)
  * firefox: thunderbird: Information disclosure in the Form Autofill component (CVE-2026-6765)
  * firefox: thunderbird: Privilege escalation in the Debugger component (CVE-2026-6769)
  * firefox: thunderbird: Uninitialized memory in the Audio/Video: Web Codecs component (CVE-2026-6751)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC: Networking component (CVE-2026-6776)
  * firefox: thunderbird: Use-after-free in the DOM: Core &amp; HTML component (CVE-2026-6746)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-27"/>
          <updated date="2026-04-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460074" id="2460074"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460075" id="2460075"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460076" id="2460076"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460078" id="2460078"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460079" id="2460079"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460085" id="2460085"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460086" id="2460086"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460088" id="2460088"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460092" id="2460092"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460094" id="2460094"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460095" id="2460095"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460096" id="2460096"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460097" id="2460097"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460099" id="2460099"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460101" id="2460101"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460102" id="2460102"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460103" id="2460103"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460104" id="2460104"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460105" id="2460105"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460106" id="2460106"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460107" id="2460107"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460108" id="2460108"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460109" id="2460109"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460110" id="2460110"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460112" id="2460112"></bugzilla>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6746" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6746</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6747" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6747</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6748" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6748</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6749" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6749</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6750" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6750</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6751" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6751</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6752" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6752</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6753" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6753</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6754" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6754</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6757" impact="Moderate" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6757</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6759" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6759</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6761" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6761</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6762" impact="Moderate" cwe="CWE-1021" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6762</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6763" impact="Moderate" cwe="CWE-66" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6763</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6764" impact="Moderate" cwe="CWE-805" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6764</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6765" impact="Moderate" cwe="CWE-359" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6765</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6766" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6766</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6767" impact="Moderate" cwe="CWE-676" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6767</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6769" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6769</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6770" impact="Moderate" cwe="CWE-440" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6770</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6771" impact="Moderate" cwe="CWE-358" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6771</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6772" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6772</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6776" impact="Low" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-6776</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6785" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6785</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6786" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6786</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202610767001" comment="firefox is earlier than 0:140.10.0-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263752" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3752: osbuild-composer security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61728" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61728"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3752" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3752"/>
        <reference ref_id="ALSA-2026:3752" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3752.html"/>
        <description>A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-04"/>
          <updated date="2026-03-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434431" id="2434431"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61728" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61728</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263752001" comment="osbuild-composer-worker is earlier than 0:149-5.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623006" comment="osbuild-composer-worker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263752002" comment="osbuild-composer is earlier than 0:149-5.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623002" comment="osbuild-composer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263752003" comment="osbuild-composer-core is earlier than 0:149-5.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623004" comment="osbuild-composer-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265146" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5146: yggdrasil security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:5146" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5146"/>
        <reference ref_id="ALSA-2026:5146" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5146.html"/>
        <description>yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-19"/>
          <updated date="2026-03-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265146001" comment="yggdrasil is earlier than 0:0.4.8-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592002" comment="yggdrasil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265146002" comment="yggdrasil-devel is earlier than 0:0.4.8-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592004" comment="yggdrasil-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622528" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22528: mod_http2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-53020" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-53020"/>
        <reference ref_id="RHSA-2026:22528" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22528"/>
        <reference ref_id="ALSA-2026:22528" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22528.html"/>
        <description>The mod_h2 Apache httpd module implements the HTTP2 protocol (h2+h2c) on top of libnghttp2 for httpd 2.4 servers.  

Security Fix(es):  

  * httpd: Apache HTTP Server: HTTP/2 DoS by Memory Increase (CVE-2025-53020)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-02"/>
          <updated date="2026-06-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2379343" id="2379343"></bugzilla>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-53020" impact="Moderate" cwe="CWE-401" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2025-53020</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202622528001" comment="mod_http2 is earlier than 0:2.0.29-4.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514625002" comment="mod_http2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202621286" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:21286: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2026-34043" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34043"/>
        <reference ref_id="CVE-2026-42899" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42899"/>
        <reference ref_id="RHSA-2026:21286" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:21286"/>
        <reference ref_id="ALSA-2026:21286" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-21286.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.127 and .NET Runtime 8.0.27.Security Fix(es):  

  * serialize-javascript: serialize-javascript: Denial of Service via specially crafted array-like object serialization (CVE-2026-34043)
  * dotnet: .NET: infinite loop allows an attacker to cause a denial of service (CVE-2026-42899)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-27"/>
          <updated date="2026-05-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453284" id="2453284"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2476605" id="2476605"></bugzilla>
          <cve public="20260331" href="https://access.redhat.com/security/cve/CVE-2026-34043" impact="Moderate" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34043</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-42899" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42899</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286001" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.127-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286002" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286003" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286004" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286005" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286006" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286007" comment="dotnet-runtime-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286008" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286009" comment="dotnet-sdk-8.0 is earlier than 0:8.0.127-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286010" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.127-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286011" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621286012" comment="dotnet-templates-8.0 is earlier than 0:8.0.127-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265145" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5145: yggdrasil-worker-package-manager security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="RHSA-2026:5145" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5145"/>
        <reference ref_id="ALSA-2026:5145" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5145.html"/>
        <description>yggdrasil-worker-package-manager is a simple package manager yggd worker. It knows how to install and remove packages, add, remove, enable and disable repositories, and does rudimentary detection of the host it is running on to guess the package manager to use. It only installs packages that match one of the provided allow-pattern regular expressions.  

Security Fix(es):  

  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-19"/>
          <updated date="2026-03-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20265145001" comment="yggdrasil-worker-package-manager is earlier than 0:0.2.3-4.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20265145002" comment="yggdrasil-worker-package-manager is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266256" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6256: python3.12 security update (Important)</title>
        <reference ref_id="CVE-2026-4519" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4519"/>
        <reference ref_id="RHSA-2026:6256" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6256"/>
        <reference ref_id="ALSA-2026:6256" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6256.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python: Python: Command-line option injection in webbrowser.open() via crafted URLs (CVE-2026-4519)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-31"/>
          <updated date="2026-03-31"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2449649" id="2449649"></bugzilla>
          <cve public="20260320" href="https://access.redhat.com/security/cve/CVE-2026-4519" impact="Important" cwe="CWE-88" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2026-4519</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256001" comment="python3-idle is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256002" comment="python3-test is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256003" comment="python3-debug is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256004" comment="python3 is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256005" comment="python3-devel is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256006" comment="python3-libs is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256007" comment="python3-tkinter is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266256008" comment="python-unversioned-command is earlier than 0:3.12.12-3.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265913" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5913: ncurses security update (Moderate)</title>
        <reference ref_id="CVE-2025-69720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-69720"/>
        <reference ref_id="RHSA-2026:5913" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5913"/>
        <reference ref_id="ALSA-2026:5913" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5913.html"/>
        <description>The ncurses (new curses) library routines are a terminal-independent method of updating character screens with reasonable optimization. The ncurses packages contain support utilities including a terminfo compiler tic, a decompiler infocmp, clear, tput, tset, and a termcap conversion tool captoinfo.  

Security Fix(es):  

  * ncurses: ncurses: Buffer overflow vulnerability may lead to arbitrary code execution. (CVE-2025-69720)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-26"/>
          <updated date="2026-03-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2449037" id="2449037"></bugzilla>
          <cve public="20260319" href="https://access.redhat.com/security/cve/CVE-2025-69720" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2025-69720</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913001" comment="ncurses is earlier than 0:6.4-15.20240127.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913002" comment="ncurses is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913003" comment="ncurses-c++-libs is earlier than 0:6.4-15.20240127.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913004" comment="ncurses-c++-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913005" comment="ncurses-devel is earlier than 0:6.4-15.20240127.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913006" comment="ncurses-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913007" comment="ncurses-libs is earlier than 0:6.4-15.20240127.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913008" comment="ncurses-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913009" comment="ncurses-base is earlier than 0:6.4-15.20240127.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913010" comment="ncurses-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913011" comment="ncurses-term is earlier than 0:6.4-15.20240127.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265913012" comment="ncurses-term is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636749" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36749: gstreamer1-plugins-bad-free security update (Important)</title>
        <reference ref_id="CVE-2026-52718" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52718"/>
        <reference ref_id="CVE-2026-52719" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52719"/>
        <reference ref_id="CVE-2026-52720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52720"/>
        <reference ref_id="CVE-2026-52722" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52722"/>
        <reference ref_id="RHSA-2026:36749" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36749"/>
        <reference ref_id="ALSA-2026:36749" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36749.html"/>
        <description>GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer.  

Security Fix(es):  

  * gstreamer1-plugins-bad-free: GStreamer: Denial of service via AV1 tile_list_obu parser byte/bit confusion (CVE-2026-52718)
  * gstreamer1-plugins-bad-free: GStreamer: Out-of-bounds read via JPEG segment length validation in VA decoder (CVE-2026-52719)
  * gstreamer1-plugins-bad-free: GStreamer: Heap buffer overflow via crafted VNC server rectangle in librfb (CVE-2026-52720)
  * gstreamer1-plugins-bad-free: GStreamer: Signed integer overflow in VMnc decoder cursor payload handling (CVE-2026-52722)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2486328" id="2486328"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486353" id="2486353"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486731" id="2486731"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486733" id="2486733"></bugzilla>
          <cve public="20260615" href="https://access.redhat.com/security/cve/CVE-2026-52718" impact="Moderate" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-52718</cve>
          <cve public="20260615" href="https://access.redhat.com/security/cve/CVE-2026-52719" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2026-52719</cve>
          <cve public="20260615" href="https://access.redhat.com/security/cve/CVE-2026-52720" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-52720</cve>
          <cve public="20260615" href="https://access.redhat.com/security/cve/CVE-2026-52722" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2026-52722</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636749001" comment="gstreamer1-plugins-bad-free is earlier than 0:1.26.7-2.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184002" comment="gstreamer1-plugins-bad-free is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636749002" comment="gstreamer1-plugins-bad-free-libs is earlier than 0:1.26.7-2.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184004" comment="gstreamer1-plugins-bad-free-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636749003" comment="gstreamer1-plugins-bad-free-devel is earlier than 0:1.26.7-2.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184006" comment="gstreamer1-plugins-bad-free-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202611413" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:11413: yggdrasil security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:11413" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:11413"/>
        <reference ref_id="ALSA-2026:11413" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-11413.html"/>
        <description>yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-28"/>
          <updated date="2026-04-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611413001" comment="yggdrasil is earlier than 0:0.4.8-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592002" comment="yggdrasil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202611413002" comment="yggdrasil-devel is earlier than 0:0.4.8-4.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592004" comment="yggdrasil-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202611412" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:11412: yggdrasil-worker-package-manager security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:11412" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:11412"/>
        <reference ref_id="ALSA-2026:11412" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-11412.html"/>
        <description>yggdrasil-worker-package-manager is a simple package manager yggd worker. It knows how to install and remove packages, add, remove, enable and disable repositories, and does rudimentary detection of the host it is running on to guess the package manager to use. It only installs packages that match one of the provided allow-pattern regular expressions.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-28"/>
          <updated date="2026-04-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202611412001" comment="yggdrasil-worker-package-manager is earlier than 0:0.2.3-5.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20265145002" comment="yggdrasil-worker-package-manager is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268119" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8119: squid security update (Important)</title>
        <reference ref_id="CVE-2026-32748" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32748"/>
        <reference ref_id="CVE-2026-33526" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33526"/>
        <reference ref_id="RHSA-2026:8119" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8119"/>
        <reference ref_id="ALSA-2026:8119" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8119.html"/>
        <description>Squid is a high-performance proxy caching server for web clients, supporting FTP, and HTTP data objects.  

Security Fix(es):  

  * squid: Squid: Denial of Service via heap Use-After-Free vulnerability in ICP handling (CVE-2026-33526)
  * Squid: Squid: Denial of Service via crafted ICP traffic (CVE-2026-32748)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-14"/>
          <updated date="2026-04-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451574" id="2451574"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451577" id="2451577"></bugzilla>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-32748" impact="Important" cwe="CWE-826" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32748</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33526" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33526</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20268119001" comment="squid is earlier than 7:6.10-6.el10_1.3"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202521002002" comment="squid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202621676" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:21676: cockpit security update (Important)</title>
        <reference ref_id="CVE-2026-4802" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4802"/>
        <reference ref_id="RHSA-2026:21676" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:21676"/>
        <reference ref_id="ALSA-2026:21676" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-21676.html"/>
        <description>Cockpit enables users to administer GNU/Linux servers using a web browser. It offers network configuration, log inspection, diagnostic reports, SELinux troubleshooting, interactive command-line sessions, and more.  

Security Fix(es):  

  * cockpit: Cockpit: Arbitrary command execution via crafted links in system logs UI (CVE-2026-4802)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-28"/>
          <updated date="2026-05-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451155" id="2451155"></bugzilla>
          <cve public="20260511" href="https://access.redhat.com/security/cve/CVE-2026-4802" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4802</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676001" comment="cockpit is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383006" comment="cockpit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676002" comment="cockpit-ws is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383002" comment="cockpit-ws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676003" comment="cockpit-ws-selinux is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383004" comment="cockpit-ws-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676004" comment="cockpit-bridge is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383012" comment="cockpit-bridge is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676005" comment="cockpit-doc is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383014" comment="cockpit-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676006" comment="cockpit-packagekit is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383016" comment="cockpit-packagekit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676007" comment="cockpit-storaged is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383008" comment="cockpit-storaged is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621676008" comment="cockpit-system is earlier than 0:356.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383010" comment="cockpit-system is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622711" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22711: vim security update (Moderate)</title>
        <reference ref_id="CVE-2026-35177" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35177"/>
        <reference ref_id="RHSA-2026:22711" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22711"/>
        <reference ref_id="ALSA-2026:22711" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22711.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: zip.vim: Vim zip.vim plugin: Arbitrary file overwrite via path traversal bypass (CVE-2026-35177)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-03"/>
          <updated date="2026-06-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2455542" id="2455542"></bugzilla>
          <cve public="20260406" href="https://access.redhat.com/security/cve/CVE-2026-35177" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:L">CVE-2026-35177</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711001" comment="vim-X11 is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711002" comment="vim-common is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711003" comment="vim-enhanced is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711004" comment="vim-minimal is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711005" comment="xxd is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711006" comment="vim-data is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622711007" comment="vim-filesystem is earlier than 2:9.1.083-9.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266342" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6342: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2026-3889" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3889"/>
        <reference ref_id="CVE-2026-4371" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4371"/>
        <reference ref_id="CVE-2026-4684" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4684"/>
        <reference ref_id="CVE-2026-4685" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4685"/>
        <reference ref_id="CVE-2026-4686" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4686"/>
        <reference ref_id="CVE-2026-4687" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4687"/>
        <reference ref_id="CVE-2026-4688" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4688"/>
        <reference ref_id="CVE-2026-4689" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4689"/>
        <reference ref_id="CVE-2026-4690" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4690"/>
        <reference ref_id="CVE-2026-4691" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4691"/>
        <reference ref_id="CVE-2026-4692" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4692"/>
        <reference ref_id="CVE-2026-4693" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4693"/>
        <reference ref_id="CVE-2026-4694" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4694"/>
        <reference ref_id="CVE-2026-4695" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4695"/>
        <reference ref_id="CVE-2026-4696" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4696"/>
        <reference ref_id="CVE-2026-4697" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4697"/>
        <reference ref_id="CVE-2026-4698" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4698"/>
        <reference ref_id="CVE-2026-4699" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4699"/>
        <reference ref_id="CVE-2026-4700" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4700"/>
        <reference ref_id="CVE-2026-4701" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4701"/>
        <reference ref_id="CVE-2026-4702" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4702"/>
        <reference ref_id="CVE-2026-4704" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4704"/>
        <reference ref_id="CVE-2026-4705" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4705"/>
        <reference ref_id="CVE-2026-4706" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4706"/>
        <reference ref_id="CVE-2026-4707" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4707"/>
        <reference ref_id="CVE-2026-4708" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4708"/>
        <reference ref_id="CVE-2026-4709" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4709"/>
        <reference ref_id="CVE-2026-4710" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4710"/>
        <reference ref_id="CVE-2026-4711" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4711"/>
        <reference ref_id="CVE-2026-4712" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4712"/>
        <reference ref_id="CVE-2026-4713" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4713"/>
        <reference ref_id="CVE-2026-4714" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4714"/>
        <reference ref_id="CVE-2026-4715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4715"/>
        <reference ref_id="CVE-2026-4716" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4716"/>
        <reference ref_id="CVE-2026-4717" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4717"/>
        <reference ref_id="CVE-2026-4718" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4718"/>
        <reference ref_id="CVE-2026-4719" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4719"/>
        <reference ref_id="CVE-2026-4720" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4720"/>
        <reference ref_id="CVE-2026-4721" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4721"/>
        <reference ref_id="RHSA-2026:6342" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6342"/>
        <reference ref_id="ALSA-2026:6342" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6342.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Use-after-free in the JavaScript Engine component (CVE-2026-4701)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 (CVE-2026-4721)
  * firefox: thunderbird: Privilege escalation in the Netmonitor component (CVE-2026-4717)
  * firefox: thunderbird: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-4688)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4706)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: Web Codecs component (CVE-2026-4695)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component (CVE-2026-4689)
  * firefox: thunderbird: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-4698)
  * firefox: thunderbird: Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component (CVE-2026-4716)
  * firefox: thunderbird: Race condition, use-after-free in the Graphics: WebRender component (CVE-2026-4684)
  * firefox: thunderbird: Undefined behavior in the WebRTC: Signaling component (CVE-2026-4705)
  * firefox: thunderbird: Uninitialized memory in the Graphics: Canvas2D component (CVE-2026-4715)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4685)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video component (CVE-2026-4714)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: GMP component (CVE-2026-4709)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video component (CVE-2026-4710)
  * firefox: thunderbird: Information disclosure in the Widget: Cocoa component (CVE-2026-4712)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: Web Codecs component (CVE-2026-4697)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics component (CVE-2026-4713)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component (CVE-2026-4690)
  * firefox: thunderbird: Use-after-free in the Widget: Cocoa component (CVE-2026-4711)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4686)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics component (CVE-2026-4708)
  * firefox: thunderbird: Use-after-free in the CSS Parsing and Computation component (CVE-2026-4691)
  * firefox: thunderbird: Incorrect boundary conditions in the Layout: Text and Fonts component (CVE-2026-4699)
  * firefox: thunderbird: Use-after-free in the Layout: Text and Fonts component (CVE-2026-4696)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: Playback component (CVE-2026-4693)
  * firefox: thunderbird: Undefined behavior in the WebRTC: Signaling component (CVE-2026-4718)
  * firefox: thunderbird: JIT miscompilation in the JavaScript Engine component (CVE-2026-4702)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Text component (CVE-2026-4719)
  * firefox: thunderbird: Incorrect boundary conditions, integer overflow in the Graphics component (CVE-2026-4694)
  * firefox: thunderbird: Sandbox escape in the Responsive Design Mode component (CVE-2026-4692)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 (CVE-2026-4720)
  * firefox: thunderbird: Mitigation bypass in the Networking: HTTP component (CVE-2026-4700)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: Canvas2D component (CVE-2026-4707)
  * firefox: thunderbird: Denial-of-service in the WebRTC: Signaling component (CVE-2026-4704)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Telemetry component (CVE-2026-4687)
  * thunderbird: Out of bounds read in IMAP parsing (CVE-2026-4371)
  * thunderbird: Spoofing issue in Thunderbird (CVE-2026-3889)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-01"/>
          <updated date="2026-04-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2450710" id="2450710"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450711" id="2450711"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450712" id="2450712"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450713" id="2450713"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450714" id="2450714"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450715" id="2450715"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450718" id="2450718"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450719" id="2450719"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450720" id="2450720"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450721" id="2450721"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450722" id="2450722"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450723" id="2450723"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450724" id="2450724"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450725" id="2450725"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450726" id="2450726"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450727" id="2450727"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450728" id="2450728"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450729" id="2450729"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450730" id="2450730"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450732" id="2450732"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450733" id="2450733"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450734" id="2450734"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450735" id="2450735"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450738" id="2450738"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450739" id="2450739"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450740" id="2450740"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450741" id="2450741"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450742" id="2450742"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450744" id="2450744"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450746" id="2450746"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450747" id="2450747"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450748" id="2450748"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450751" id="2450751"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450752" id="2450752"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450755" id="2450755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450756" id="2450756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450757" id="2450757"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451001" id="2451001"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451006" id="2451006"></bugzilla>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-3889" impact="Low" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N">CVE-2026-3889</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4371" impact="Important" cwe="CWE-130" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-4371</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4684" impact="Important" cwe="CWE-364" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4684</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4685" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4685</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4686" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4686</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4687" impact="Important" cwe="CWE-501" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4687</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4688" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4688</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4689" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4689</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4690" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4690</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4691" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4691</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4692" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4692</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4693" impact="Important" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4693</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4694" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4694</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4695" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4695</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4696" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4696</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4697" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4697</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4698" impact="Important" cwe="CWE-733" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4698</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4699" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4699</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4700" impact="Important" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4700</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4701" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4701</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4702" impact="Moderate" cwe="CWE-733" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4702</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4704" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-4704</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4705" impact="Moderate" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-4705</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4706" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4706</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4707" impact="Moderate" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4707</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4708" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4708</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4709" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4709</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4710" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4710</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4711" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4711</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4712" impact="Moderate" cwe="CWE-359" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-4712</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4713" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4713</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4714" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-4714</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4715" impact="Moderate" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-4715</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4716" impact="Moderate" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4716</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4717" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-4717</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4718" impact="Low" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-4718</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4719" impact="Low" cwe="CWE-805" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-4719</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4720" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4720</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4721" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4721</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20266342001" comment="thunderbird is earlier than 0:140.9.0-1.el10_1.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268858" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8858: giflib security update (Important)</title>
        <reference ref_id="CVE-2026-23868" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23868"/>
        <reference ref_id="RHSA-2026:8858" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8858"/>
        <reference ref_id="ALSA-2026:8858" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8858.html"/>
        <description>giflib is a library for reading and writing gif images.  

Security Fix(es):  

  * giflib: Giflib: Double-free vulnerability leading to memory corruption (CVE-2026-23868)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-20"/>
          <updated date="2026-04-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2446207" id="2446207"></bugzilla>
          <cve public="20260310" href="https://access.redhat.com/security/cve/CVE-2026-23868" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-23868</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268858001" comment="giflib is earlier than 0:5.2.1-22.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268858002" comment="giflib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268858003" comment="giflib-devel is earlier than 0:5.2.1-22.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268858004" comment="giflib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268842" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8842: delve security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="CVE-2026-27137" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27137"/>
        <reference ref_id="RHSA-2026:8842" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8842"/>
        <reference ref_id="ALSA-2026:8842" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8842.html"/>
        <description>Delve is a debugger for the Go programming language. The goal of the project is to provide a simple, full featured debugging tool for Go. Delve should be easy to invoke and easy to use. Chances are if you're using a debugger, things aren't going your way. With that in mind, Delve should stay out of your way as much as possible.  

Security Fix(es):  

  * crypto/x509: Incorrect enforcement of email constraints in crypto/x509 (CVE-2026-27137)
  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-20"/>
          <updated date="2026-04-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445345" id="2445345"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-27137" impact="Important" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27137</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20268842001" comment="delve is earlier than 0:1.25.2-3.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259317002" comment="delve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265941" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5941: golang security update (Important)</title>
        <reference ref_id="CVE-2025-61731" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61731"/>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:5941" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5941"/>
        <reference ref_id="ALSA-2026:5941" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5941.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * cmd/go: cmd/go: Arbitrary file write via malicious pkg-config directive (CVE-2025-61731)
  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-26"/>
          <updated date="2026-03-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2434433" id="2434433"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61731" impact="Important" cwe="CWE-88" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H">CVE-2025-61731</cve>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941001" comment="go-toolset is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941002" comment="golang is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941003" comment="golang-bin is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941004" comment="golang-race is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941005" comment="golang-docs is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941006" comment="golang-misc is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941007" comment="golang-src is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265941008" comment="golang-tests is earlier than 0:1.25.8-1.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20265939" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:5939: freerdp security update (Important)</title>
        <reference ref_id="CVE-2026-26955" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26955"/>
        <reference ref_id="CVE-2026-26965" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26965"/>
        <reference ref_id="RHSA-2026:5939" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:5939"/>
        <reference ref_id="ALSA-2026:5939" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-5939.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * freerdp: FreeRDP: Arbitrary code execution via heap out-of-bounds write in RLE planar decode path (CVE-2026-26965)
  * freerdp: FreeRDP: Arbitrary code execution via heap buffer overflow in GDI surface pipeline (CVE-2026-26955)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-26"/>
          <updated date="2026-03-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2442959" id="2442959"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2443132" id="2443132"></bugzilla>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-26955" impact="Important" cwe="CWE-805" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-26955</cve>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-26965" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-26965</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265939001" comment="libwinpr is earlier than 2:3.10.3-5.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265939002" comment="freerdp-devel is earlier than 2:3.10.3-5.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265939003" comment="freerdp-server is earlier than 2:3.10.3-5.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265939004" comment="libwinpr-devel is earlier than 2:3.10.3-5.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265939005" comment="freerdp is earlier than 2:3.10.3-5.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20265939006" comment="freerdp-libs is earlier than 2:3.10.3-5.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268840" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8840: go-rpm-macros security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:8840" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8840"/>
        <reference ref_id="ALSA-2026:8840" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8840.html"/>
        <description>This package provides build-stage rpm automation to simplify the creation of Go language (golang) packages. It does not need to be included in the default build root: go-srpm-macros will pull it in for Go packages only.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-20"/>
          <updated date="2026-04-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268840001" comment="go-filesystem is earlier than 0:3.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669002" comment="go-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268840002" comment="go-rpm-macros is earlier than 0:3.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669004" comment="go-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268840003" comment="go-rpm-templates is earlier than 0:3.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669006" comment="go-rpm-templates is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268840004" comment="go-srpm-macros is earlier than 0:3.6.0-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263669008" comment="go-srpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266053" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6053: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-71238" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-71238"/>
        <reference ref_id="CVE-2026-23231" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23231"/>
        <reference ref_id="RHSA-2026:6053" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6053"/>
        <reference ref_id="ALSA-2026:6053" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6053.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: kernel: Privilege escalation or denial of service via use-after-free in nf_tables_addchain() (CVE-2026-23231)
  * kernel: Linux kernel (qla2xxx): Double free vulnerability leads to denial of service and potential privilege escalation. (CVE-2025-71238)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-30"/>
          <updated date="2026-03-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2444376" id="2444376"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2444398" id="2444398"></bugzilla>
          <cve public="20260304" href="https://access.redhat.com/security/cve/CVE-2025-71238" impact="Moderate" cwe="CWE-672" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-71238</cve>
          <cve public="20260304" href="https://access.redhat.com/security/cve/CVE-2026-23231" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23231</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053001" comment="kernel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053002" comment="kernel-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053003" comment="kernel-debug is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053004" comment="kernel-debug-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053005" comment="kernel-debug-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053007" comment="kernel-debug-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053011" comment="kernel-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053013" comment="kernel-headers is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053014" comment="kernel-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053015" comment="kernel-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053018" comment="kernel-rt is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053019" comment="kernel-rt-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053030" comment="kernel-tools is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053034" comment="perf is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053035" comment="python3-perf is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053036" comment="rtla is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053037" comment="rv is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053045" comment="kernel-64k is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053046" comment="kernel-64k-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053073" comment="libperf is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266053075" comment="kernel-doc is earlier than 0:6.12.0-124.47.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266825" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6825: rsync security update (Moderate)</title>
        <reference ref_id="CVE-2025-10158" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10158"/>
        <reference ref_id="RHSA-2026:6825" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6825"/>
        <reference ref_id="ALSA-2026:6825" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6825.html"/>
        <description>The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool.  

Security Fix(es):  

  * rsync: Rsync: Out of bounds array access via negative index (CVE-2025-10158)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-07"/>
          <updated date="2026-04-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2415637" id="2415637"></bugzilla>
          <cve public="20251118" href="https://access.redhat.com/security/cve/CVE-2025-10158" impact="Moderate" cwe="CWE-129" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N">CVE-2025-10158</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266825001" comment="rsync is earlier than 0:3.4.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266825002" comment="rsync is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266825003" comment="rsync-daemon is earlier than 0:3.4.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266825004" comment="rsync-daemon is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266825005" comment="rsync-rrsync is earlier than 0:3.4.1-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266825006" comment="rsync-rrsync is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202610711" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:10711: python3.12 security update (Important)</title>
        <reference ref_id="CVE-2026-4786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4786"/>
        <reference ref_id="CVE-2026-6100" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6100"/>
        <reference ref_id="RHSA-2026:10711" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:10711"/>
        <reference ref_id="ALSA-2026:10711" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-10711.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100)
  * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-27"/>
          <updated date="2026-04-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457932" id="2457932"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2458049" id="2458049"></bugzilla>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-4786" impact="Important" cwe="CWE-88" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2026-4786</cve>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-6100" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-6100</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711001" comment="python3 is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711002" comment="python3-devel is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711003" comment="python3-libs is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711004" comment="python3-tkinter is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711005" comment="python3-debug is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711006" comment="python3-idle is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711007" comment="python3-test is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202610711008" comment="python-unversioned-command is earlier than 0:3.12.12-3.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622715" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22715: expat security update (Important)</title>
        <reference ref_id="CVE-2026-45186" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45186"/>
        <reference ref_id="RHSA-2026:22715" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22715"/>
        <reference ref_id="ALSA-2026:22715" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22715.html"/>
        <description>Expat is a C library for parsing XML documents.  

Security Fix(es):  

  * libexpat: denial of service via crafted XML input (CVE-2026-45186)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-03"/>
          <updated date="2026-06-03"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2468575" id="2468575"></bugzilla>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-45186" impact="Important" cwe="CWE-407" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-45186</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622715001" comment="expat is earlier than 0:2.7.3-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512002" comment="expat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622715002" comment="expat-devel is earlier than 0:2.7.3-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257512004" comment="expat-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266817" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6817: capstone security update (Important)</title>
        <reference ref_id="CVE-2025-67873" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-67873"/>
        <reference ref_id="CVE-2025-68114" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68114"/>
        <reference ref_id="RHSA-2026:6817" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6817"/>
        <reference ref_id="ALSA-2026:6817" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6817.html"/>
        <description>Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.  

Security Fix(es):  

  * capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)
  * capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-07"/>
          <updated date="2026-04-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2423416" id="2423416"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2423419" id="2423419"></bugzilla>
          <cve public="20251217" href="https://access.redhat.com/security/cve/CVE-2025-67873" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H">CVE-2025-67873</cve>
          <cve public="20251217" href="https://access.redhat.com/security/cve/CVE-2025-68114" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2025-68114</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817001" comment="capstone is earlier than 0:5.0.1-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817002" comment="capstone is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817003" comment="capstone-devel is earlier than 0:5.0.1-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817004" comment="capstone-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817005" comment="capstone-java is earlier than 0:5.0.1-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817006" comment="capstone-java is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817007" comment="python3-capstone is earlier than 0:5.0.1-7.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266817008" comment="python3-capstone is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267680" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7680: perl-XML-Parser security update (Important)</title>
        <reference ref_id="CVE-2006-10002" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2006-10002"/>
        <reference ref_id="CVE-2006-10003" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2006-10003"/>
        <reference ref_id="RHSA-2026:7680" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7680"/>
        <reference ref_id="ALSA-2026:7680" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7680.html"/>
        <description>This module provides ways to parse XML documents. It is built on top of XML::Parser::Expat, which is a lower level interface to James Clark's expat library. Each call to one of the parsing methods creates a new instance of XML::Parser::Expat which is then used to parse the document. Expat options may be provided when the XML::Parser object is created. These options are then passed on to the Expat object on each parse call. They can also be given as extra arguments to the parse methods, in which case they override options given at XML::Parser creation time.  

Security Fix(es):  

  * perl-xml-parser: XML::Parser: Memory corruption via deeply nested XML files (CVE-2006-10003)
  * perl-xml-parser: XML::Parser for Perl: Heap corruption and denial of service from crafted XML input (CVE-2006-10002)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-13"/>
          <updated date="2026-04-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2448999" id="2448999"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2449001" id="2449001"></bugzilla>
          <cve public="20260319" href="https://access.redhat.com/security/cve/CVE-2006-10002" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2006-10002</cve>
          <cve public="20260319" href="https://access.redhat.com/security/cve/CVE-2006-10003" impact="Important" cwe="CWE-193" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2006-10003</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20267680001" comment="perl-XML-Parser is earlier than 0:2.47-6.1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20267680002" comment="perl-XML-Parser is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266388" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6388: grafana-pcp security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:6388" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6388"/>
        <reference ref_id="ALSA-2026:6388" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6388.html"/>
        <description>The Grafana plugin for Performance Co-Pilot includes datasources for scalable time series from pmseries and Redis, live PCP metrics and bpftrace scripts from pmdabpftrace, as well as several dashboards.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-01"/>
          <updated date="2026-04-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20266388001" comment="grafana-pcp is earlier than 0:5.3.0-3.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258915002" comment="grafana-pcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20269689" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:9689: java-21-openjdk security update (Important)</title>
        <reference ref_id="CVE-2026-22007" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22007"/>
        <reference ref_id="CVE-2026-22013" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22013"/>
        <reference ref_id="CVE-2026-22016" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22016"/>
        <reference ref_id="CVE-2026-22018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22018"/>
        <reference ref_id="CVE-2026-22021" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22021"/>
        <reference ref_id="CVE-2026-23865" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23865"/>
        <reference ref_id="CVE-2026-34268" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34268"/>
        <reference ref_id="CVE-2026-34282" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34282"/>
        <reference ref_id="RHSA-2026:9689" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:9689"/>
        <reference ref_id="ALSA-2026:9689" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-9689.html"/>
        <description>The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Enhance crypto algorithm support (CVE-2026-22007)
  * JDK: Improve Kerberos credentialing (CVE-2026-22013)
  * JDK: Enhance Path Factories Redux (CVE-2026-22016)
  * JDK: Enhance Zip file reading (CVE-2026-22018)
  * JDK: Enhance certificate chain validation (CVE-2026-22021)
  * JDK: Updating FreeType 2.14.1 (CVE-2026-23865)
  * JDK: Enhance TLS connection handling (CVE-2026-34282)
  * JDK: Enhance key generation (CVE-2026-34268)


Bug Fix(es):  

  * When copying files, OpenJDK 21 prefers to use the copy_file_range native function for performance reasons, only falling back to sendfile when this fails. However, in previous OpenJDK 21 releases, a response of EOPNOTSUPP (operation not supported) did not cause the JDK to fall back to sendfile. This is rectified in this release. (AlmaLinux-169617, AlmaLinux-169951, AlmaLinux-169952, AlmaLinux-169942, AlmaLinux-169953, AlmaLinux-169945)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-23"/>
          <updated date="2026-04-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22007" impact="Low" cwe="CWE-327" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-22007</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22013" impact="Moderate" cwe="CWE-319" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-22013</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22016" impact="Important" cwe="CWE-611" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-22016</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22018" impact="Low" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-22018</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22021" impact="Moderate" cwe="CWE-674" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-22021</cve>
          <cve public="20260302" href="https://access.redhat.com/security/cve/CVE-2026-23865" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L">CVE-2026-23865</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34268" impact="Low" cwe="CWE-327" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-34268</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34282" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34282</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689001" comment="java-21-openjdk is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508002" comment="java-21-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689002" comment="java-21-openjdk-demo is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508004" comment="java-21-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689003" comment="java-21-openjdk-devel is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508006" comment="java-21-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689004" comment="java-21-openjdk-headless is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508008" comment="java-21-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689005" comment="java-21-openjdk-javadoc is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508010" comment="java-21-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689006" comment="java-21-openjdk-javadoc-zip is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508012" comment="java-21-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689007" comment="java-21-openjdk-jmods is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508014" comment="java-21-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689008" comment="java-21-openjdk-src is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508016" comment="java-21-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689009" comment="java-21-openjdk-static-libs is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508018" comment="java-21-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689010" comment="java-21-openjdk-demo-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508020" comment="java-21-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689011" comment="java-21-openjdk-demo-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508022" comment="java-21-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689012" comment="java-21-openjdk-devel-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508024" comment="java-21-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689013" comment="java-21-openjdk-devel-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508026" comment="java-21-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689014" comment="java-21-openjdk-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508028" comment="java-21-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689015" comment="java-21-openjdk-headless-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508030" comment="java-21-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689016" comment="java-21-openjdk-headless-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508032" comment="java-21-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689017" comment="java-21-openjdk-jmods-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508034" comment="java-21-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689018" comment="java-21-openjdk-jmods-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508036" comment="java-21-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689019" comment="java-21-openjdk-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508038" comment="java-21-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689020" comment="java-21-openjdk-src-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508040" comment="java-21-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689021" comment="java-21-openjdk-src-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508042" comment="java-21-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689022" comment="java-21-openjdk-static-libs-fastdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508044" comment="java-21-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269689023" comment="java-21-openjdk-static-libs-slowdebug is earlier than 1:21.0.11.0.10-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508046" comment="java-21-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266631" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6631: fontforge security update (Important)</title>
        <reference ref_id="CVE-2025-15270" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-15270"/>
        <reference ref_id="RHSA-2026:6631" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6631"/>
        <reference ref_id="ALSA-2026:6631" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6631.html"/>
        <description>FontForge is a font editor for outline and bitmap fonts. It supports a range of font formats, including PostScript (ASCII and binary Type 1, some Type 3 and Type 0), TrueType, OpenType (Type2) and CID-keyed fonts.   

Security Fix(es):  

  * fontforge: FontForge: Remote Code Execution via malicious SFD file parsing (CVE-2025-15270)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-06"/>
          <updated date="2026-04-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2426434" id="2426434"></bugzilla>
          <cve public="20251231" href="https://access.redhat.com/security/cve/CVE-2025-15270" impact="Important" cwe="CWE-129" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2025-15270</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20266631001" comment="fontforge is earlier than 0:20230101-15.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20262230002" comment="fontforge is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267081" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7081: libtiff security update (Moderate)</title>
        <reference ref_id="CVE-2023-52356" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2023-52356"/>
        <reference ref_id="RHSA-2026:7081" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7081"/>
        <reference ref_id="ALSA-2026:7081" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7081.html"/>
        <description>The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.  

Security Fix(es):  

  * libtiff: Segment fault in libtiff in TIFFReadRGBATileExt() leading to denial of service (CVE-2023-52356)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-08"/>
          <updated date="2026-04-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2251344" id="2251344"></bugzilla>
          <cve public="20231103" href="https://access.redhat.com/security/cve/CVE-2023-52356" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2023-52356</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267081001" comment="libtiff is earlier than 0:4.6.0-6.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156002" comment="libtiff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267081002" comment="libtiff-devel is earlier than 0:4.6.0-6.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156004" comment="libtiff-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267081003" comment="libtiff-tools is earlier than 0:4.6.0-6.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156006" comment="libtiff-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267080" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7080: nodejs22 security update (Important)</title>
        <reference ref_id="CVE-2026-1525" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1525"/>
        <reference ref_id="CVE-2026-1526" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1526"/>
        <reference ref_id="CVE-2026-1528" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1528"/>
        <reference ref_id="CVE-2026-2229" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2229"/>
        <reference ref_id="CVE-2026-21710" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21710"/>
        <reference ref_id="CVE-2026-25547" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25547"/>
        <reference ref_id="CVE-2026-26996" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26996"/>
        <reference ref_id="CVE-2026-27135" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27135"/>
        <reference ref_id="CVE-2026-27904" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27904"/>
        <reference ref_id="RHSA-2026:7080" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7080"/>
        <reference ref_id="ALSA-2026:7080" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7080.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime \ for easily building fast, scalable network applications. \ Node.js uses an event-driven, non-blocking I/O model that \ makes it lightweight and efficient, perfect for data-intensive \ real-time applications that run across distributed devices.  

Security Fix(es):  

  * brace-expansion: brace-expansion: Denial of Service via unbounded brace range expansion (CVE-2026-25547)
  * minimatch: minimatch: Denial of Service via specially crafted glob patterns (CVE-2026-26996)
  * minimatch: Minimatch: Denial of Service via catastrophic backtracking in glob expressions (CVE-2026-27904)
  * undici: undici: Denial of Service via unbounded memory consumption during WebSocket permessage-deflate decompression (CVE-2026-1526)
  * undici: Undici: Denial of Service via invalid WebSocket permessage-deflate extension parameter (CVE-2026-2229)
  * undici: Undici: HTTP Request Smuggling and Denial of Service due to duplicate Content-Length headers (CVE-2026-1525)
  * undici: undici: Denial of Service via crafted WebSocket frame with large length (CVE-2026-1528)
  * nghttp2: nghttp2: Denial of Service via malformed HTTP/2 frames after session termination (CVE-2026-27135)
  * Node.js: Node.js: Denial of Service due to crafted HTTP `__proto__` header (CVE-2026-21710)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-08"/>
          <updated date="2026-04-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2436942" id="2436942"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2441268" id="2441268"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442922" id="2442922"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447142" id="2447142"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447143" id="2447143"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447144" id="2447144"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447145" id="2447145"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2448754" id="2448754"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453151" id="2453151"></bugzilla>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1525" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-1525</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1526" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-1526</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1528" impact="Important" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-1528</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-2229" impact="Important" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-2229</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21710" impact="Important" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21710</cve>
          <cve public="20260204" href="https://access.redhat.com/security/cve/CVE-2026-25547" impact="Moderate" cwe="CWE-409" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-25547</cve>
          <cve public="20260220" href="https://access.redhat.com/security/cve/CVE-2026-26996" impact="Moderate" cwe="CWE-1333" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-26996</cve>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-27135" impact="Important" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27135</cve>
          <cve public="20260226" href="https://access.redhat.com/security/cve/CVE-2026-27904" impact="Moderate" cwe="CWE-1333" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-27904</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267080001" comment="nodejs is earlier than 1:22.22.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493002" comment="nodejs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267080002" comment="nodejs-devel is earlier than 1:22.22.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493004" comment="nodejs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267080003" comment="nodejs-full-i18n is earlier than 1:22.22.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493006" comment="nodejs-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267080004" comment="nodejs-libs is earlier than 1:22.22.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493008" comment="nodejs-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267080005" comment="nodejs-npm is earlier than 1:10.9.7-1.22.22.2.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493010" comment="nodejs-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267080006" comment="nodejs-docs is earlier than 1:22.22.2-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493012" comment="nodejs-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202612285" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:12285: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2026-6746" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6746"/>
        <reference ref_id="CVE-2026-6747" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6747"/>
        <reference ref_id="CVE-2026-6748" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6748"/>
        <reference ref_id="CVE-2026-6749" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6749"/>
        <reference ref_id="CVE-2026-6750" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6750"/>
        <reference ref_id="CVE-2026-6751" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6751"/>
        <reference ref_id="CVE-2026-6752" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6752"/>
        <reference ref_id="CVE-2026-6753" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6753"/>
        <reference ref_id="CVE-2026-6754" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6754"/>
        <reference ref_id="CVE-2026-6757" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6757"/>
        <reference ref_id="CVE-2026-6759" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6759"/>
        <reference ref_id="CVE-2026-6761" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6761"/>
        <reference ref_id="CVE-2026-6762" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6762"/>
        <reference ref_id="CVE-2026-6763" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6763"/>
        <reference ref_id="CVE-2026-6764" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6764"/>
        <reference ref_id="CVE-2026-6765" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6765"/>
        <reference ref_id="CVE-2026-6766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6766"/>
        <reference ref_id="CVE-2026-6767" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6767"/>
        <reference ref_id="CVE-2026-6769" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6769"/>
        <reference ref_id="CVE-2026-6770" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6770"/>
        <reference ref_id="CVE-2026-6771" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6771"/>
        <reference ref_id="CVE-2026-6772" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6772"/>
        <reference ref_id="CVE-2026-6776" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6776"/>
        <reference ref_id="CVE-2026-6785" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6785"/>
        <reference ref_id="CVE-2026-6786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6786"/>
        <reference ref_id="RHSA-2026:12285" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:12285"/>
        <reference ref_id="ALSA-2026:12285" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-12285.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Incorrect boundary conditions in the Libraries component in NSS (CVE-2026-6772)
  * firefox: thunderbird: Use-after-free in the JavaScript Engine component (CVE-2026-6754)
  * firefox: thunderbird: Spoofing issue in the DOM: Core &amp; HTML component (CVE-2026-6762)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC component (CVE-2026-6752)
  * firefox: thunderbird: Other issue in the Storage: IndexedDB component (CVE-2026-6770)
  * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-6757)
  * firefox: thunderbird: Other issue in the Libraries component in NSS (CVE-2026-6767)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 (CVE-2026-6786)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC component (CVE-2026-6753)
  * firefox: thunderbird: Use-after-free in the Widget: Cocoa component (CVE-2026-6759)
  * firefox: thunderbird: Use-after-free in the WebRTC component (CVE-2026-6747)
  * firefox: thunderbird: Information disclosure due to uninitialized memory in the Graphics: Canvas2D component (CVE-2026-6749)
  * firefox: thunderbird: Incorrect boundary conditions in the Libraries component in NSS (CVE-2026-6766)
  * firefox: thunderbird: Privilege escalation in the Networking component (CVE-2026-6761)
  * firefox: thunderbird: Mitigation bypass in the File Handling component (CVE-2026-6763)
  * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-6750)
  * firefox: thunderbird: Uninitialized memory in the Audio/Video: Web Codecs component (CVE-2026-6748)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 (CVE-2026-6785)
  * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-6771)
  * firefox: thunderbird: Incorrect boundary conditions in the DOM: Device Interfaces component (CVE-2026-6764)
  * firefox: thunderbird: Information disclosure in the Form Autofill component (CVE-2026-6765)
  * firefox: thunderbird: Privilege escalation in the Debugger component (CVE-2026-6769)
  * firefox: thunderbird: Uninitialized memory in the Audio/Video: Web Codecs component (CVE-2026-6751)
  * firefox: thunderbird: Incorrect boundary conditions in the WebRTC: Networking component (CVE-2026-6776)
  * firefox: thunderbird: Use-after-free in the DOM: Core &amp; HTML component (CVE-2026-6746)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-30"/>
          <updated date="2026-04-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460074" id="2460074"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460075" id="2460075"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460076" id="2460076"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460078" id="2460078"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460079" id="2460079"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460085" id="2460085"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460086" id="2460086"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460088" id="2460088"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460092" id="2460092"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460094" id="2460094"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460095" id="2460095"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460096" id="2460096"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460097" id="2460097"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460099" id="2460099"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460101" id="2460101"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460102" id="2460102"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460103" id="2460103"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460104" id="2460104"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460105" id="2460105"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460106" id="2460106"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460107" id="2460107"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460108" id="2460108"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460109" id="2460109"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460110" id="2460110"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460112" id="2460112"></bugzilla>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6746" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6746</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6747" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6747</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6748" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6748</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6749" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6749</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6750" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6750</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6751" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6751</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6752" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6752</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6753" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6753</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6754" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6754</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6757" impact="Moderate" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6757</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6759" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6759</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6761" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6761</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6762" impact="Moderate" cwe="CWE-1021" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6762</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6763" impact="Moderate" cwe="CWE-66" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6763</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6764" impact="Moderate" cwe="CWE-805" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6764</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6765" impact="Moderate" cwe="CWE-359" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6765</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6766" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6766</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6767" impact="Moderate" cwe="CWE-676" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6767</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6769" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6769</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6770" impact="Moderate" cwe="CWE-440" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6770</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6771" impact="Moderate" cwe="CWE-358" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6771</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6772" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-6772</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6776" impact="Low" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-6776</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6785" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6785</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-6786" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-6786</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202612285001" comment="thunderbird is earlier than 0:140.10.0-1.el10_1.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266259" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6259: gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free security update (Important)</title>
        <reference ref_id="CVE-2026-2920" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2920"/>
        <reference ref_id="CVE-2026-2921" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2921"/>
        <reference ref_id="CVE-2026-2922" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2922"/>
        <reference ref_id="CVE-2026-2923" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2923"/>
        <reference ref_id="CVE-2026-3082" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3082"/>
        <reference ref_id="CVE-2026-3083" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3083"/>
        <reference ref_id="CVE-2026-3085" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3085"/>
        <reference ref_id="RHSA-2026:6259" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6259"/>
        <reference ref_id="ALSA-2026:6259" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6259.html"/>
        <description>GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer.  

Security Fix(es):  

  * GStreamer: GStreamer: Arbitrary code execution via ASF file processing (CVE-2026-2920)
  * GStreamer: GStreamer: Remote Code Execution via heap-based buffer overflow in JPEG parser (CVE-2026-3082)
  * GStreamer: GStreamer: Remote Code Execution via Heap-based Buffer Overflow in rtpqdm2depay (CVE-2026-3085)
  * GStreamer: GStreamer: Arbitrary code execution via RIFF palette integer overflow in AVI file handling (CVE-2026-2921)
  * GStreamer: GStreamer: Remote Code Execution via Out-Of-Bounds Write in rtpqdm2depay (CVE-2026-3083)
  * GStreamer: GStreamer: Remote Code Execution via out-of-bounds write in RealMedia Demuxer (CVE-2026-2922)
  * GStreamer: GStreamer: Remote Code Execution via out-of-bounds write in DVB Subtitles handling (CVE-2026-2923)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-31"/>
          <updated date="2026-03-31"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2447490" id="2447490"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447492" id="2447492"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447495" id="2447495"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447496" id="2447496"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447498" id="2447498"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447500" id="2447500"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447503" id="2447503"></bugzilla>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-2920" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2920</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-2921" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2921</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-2922" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2922</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-2923" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-2923</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-3082" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-3082</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-3083" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-3083</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-3085" impact="Important" cwe="CWE-1284" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-3085</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259001" comment="gstreamer1-plugins-base-devel is earlier than 0:1.24.11-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259002" comment="gstreamer1-plugins-base-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259003" comment="gstreamer1-plugins-base-tools is earlier than 0:1.24.11-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259004" comment="gstreamer1-plugins-base-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259005" comment="gstreamer1-plugins-good is earlier than 0:1.24.11-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259006" comment="gstreamer1-plugins-good is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259007" comment="gstreamer1-plugins-bad-free is earlier than 0:1.24.11-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184002" comment="gstreamer1-plugins-bad-free is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259008" comment="gstreamer1-plugins-bad-free-libs is earlier than 0:1.24.11-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184004" comment="gstreamer1-plugins-bad-free-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259009" comment="gstreamer1-plugins-base is earlier than 0:1.24.11-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259010" comment="gstreamer1-plugins-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259011" comment="gstreamer1-plugins-good-gtk is earlier than 0:1.24.11-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259012" comment="gstreamer1-plugins-good-gtk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259013" comment="gstreamer1-plugins-ugly-free is earlier than 0:1.24.11-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259014" comment="gstreamer1-plugins-ugly-free is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259015" comment="gstreamer1-plugins-bad-free-devel is earlier than 0:1.24.11-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258184006" comment="gstreamer1-plugins-bad-free-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266622" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6622: crun security update (Moderate)</title>
        <reference ref_id="CVE-2026-30892" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-30892"/>
        <reference ref_id="RHSA-2026:6622" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6622"/>
        <reference ref_id="ALSA-2026:6622" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6622.html"/>
        <description>crun is a OCI runtime  

Security Fix(es):  

  * crun: crun: Privilege escalation due to incorrect parsing of the `--user` option (CVE-2026-30892)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-06"/>
          <updated date="2026-04-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451576" id="2451576"></bugzilla>
          <cve public="20260325" href="https://access.redhat.com/security/cve/CVE-2026-30892" impact="Moderate" cwe="CWE-115" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-30892</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20266622001" comment="crun is earlier than 0:1.27-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20266622002" comment="crun is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266344" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6344: grafana security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:6344" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6344"/>
        <reference ref_id="ALSA-2026:6344" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6344.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-01"/>
          <updated date="2026-04-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266344001" comment="grafana is earlier than 0:10.2.6-23.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266344002" comment="grafana-selinux is earlier than 0:10.2.6-23.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268312" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8312: bind security update (Important)</title>
        <reference ref_id="CVE-2026-1519" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1519"/>
        <reference ref_id="RHSA-2026:8312" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8312"/>
        <reference ref_id="ALSA-2026:8312" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8312.html"/>
        <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.  

Security Fix(es):  

  * bind: BIND: Denial of Service via maliciously crafted DNSSEC-validated zone (CVE-2026-1519)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-15"/>
          <updated date="2026-04-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451305" id="2451305"></bugzilla>
          <cve public="20260325" href="https://access.redhat.com/security/cve/CVE-2026-1519" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-1519</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312001" comment="bind is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912002" comment="bind is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312002" comment="bind-chroot is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912004" comment="bind-chroot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312003" comment="bind-dnssec-utils is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912006" comment="bind-dnssec-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312004" comment="bind-libs is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912008" comment="bind-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312005" comment="bind-utils is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912010" comment="bind-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312006" comment="bind-devel is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912012" comment="bind-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312007" comment="bind-license is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912014" comment="bind-license is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268312008" comment="bind-doc is earlier than 32:9.18.33-10.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912016" comment="bind-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266799" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6799: freerdp security update (Important)</title>
        <reference ref_id="CVE-2026-22852" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22852"/>
        <reference ref_id="CVE-2026-22854" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22854"/>
        <reference ref_id="CVE-2026-22856" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22856"/>
        <reference ref_id="CVE-2026-23732" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23732"/>
        <reference ref_id="CVE-2026-23948" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23948"/>
        <reference ref_id="CVE-2026-24491" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24491"/>
        <reference ref_id="CVE-2026-24675" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24675"/>
        <reference ref_id="CVE-2026-24676" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24676"/>
        <reference ref_id="CVE-2026-24679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24679"/>
        <reference ref_id="CVE-2026-24681" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24681"/>
        <reference ref_id="CVE-2026-24682" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24682"/>
        <reference ref_id="CVE-2026-24683" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24683"/>
        <reference ref_id="CVE-2026-24684" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-24684"/>
        <reference ref_id="CVE-2026-31806" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31806"/>
        <reference ref_id="RHSA-2026:6799" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6799"/>
        <reference ref_id="ALSA-2026:6799" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6799.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * freerdp: FreeRDP heap-use-after-free (CVE-2026-22856)
  * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22854)
  * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22852)
  * freerdp: FreeRDP: Denial of Service via FastGlyph parsing buffer overflow (CVE-2026-23732)
  * freerdp: FreeRDP: Denial of Service via use-after-free in AUDIN format renegotiation (CVE-2026-24676)
  * freerdp: FreeRDP has a heap-use-after-free in video_timer (CVE-2026-24491)
  * freerdp: FreeRDP has a NULL Pointer Dereference in rdp_write_logon_info_v2() (CVE-2026-23948)
  * freerdp: FreeRDP has a Heap-use-after-free in play_thread (CVE-2026-24684)
  * freerdp: FreeRDP has a heap-use-after-free in urb_bulk_transfer_cb (CVE-2026-24681)
  * freerdp: FreeRDP has a Heap-buffer-overflow in audio_formats_free (CVE-2026-24682)
  * freerdp: FreeRDP has a heap-use-after-free in ainput_send_input_event (CVE-2026-24683)
  * freerdp: FreeRDP has a heap-buffer-overflow in urb_select_interface (CVE-2026-24679)
  * freerdp: FreeRDP has a Heap-use-after-free in urb_select_interface (CVE-2026-24675)
  * freerdp: FreeRDP: Arbitrary code execution via crafted Remote Desktop Protocol (RDP) server messages (CVE-2026-31806)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-07"/>
          <updated date="2026-04-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2429650" id="2429650"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429652" id="2429652"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2429654" id="2429654"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2430881" id="2430881"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438201" id="2438201"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438202" id="2438202"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438207" id="2438207"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438208" id="2438208"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438210" id="2438210"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438212" id="2438212"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438216" id="2438216"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438217" id="2438217"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2438221" id="2438221"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447376" id="2447376"></bugzilla>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22852" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-22852</cve>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22854" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-22854</cve>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2026-22856" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-22856</cve>
          <cve public="20260119" href="https://access.redhat.com/security/cve/CVE-2026-23732" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-23732</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-23948" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-23948</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24491" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24491</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24675" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24675</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24676" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24676</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24679" impact="Moderate" cwe="CWE-1285" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24679</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24681" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24681</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24682" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24682</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24683" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24683</cve>
          <cve public="20260209" href="https://access.redhat.com/security/cve/CVE-2026-24684" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-24684</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-31806" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-31806</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266799001" comment="freerdp is earlier than 2:3.10.3-5.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266799002" comment="freerdp-libs is earlier than 2:3.10.3-5.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266799003" comment="libwinpr is earlier than 2:3.10.3-5.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266799004" comment="freerdp-devel is earlier than 2:3.10.3-5.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266799005" comment="freerdp-server is earlier than 2:3.10.3-5.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266799006" comment="libwinpr-devel is earlier than 2:3.10.3-5.el10_1.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266463" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6463: openssh security update (Important)</title>
        <reference ref_id="CVE-2026-3497" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3497"/>
        <reference ref_id="RHSA-2026:6463" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6463"/>
        <reference ref_id="ALSA-2026:6463" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6463.html"/>
        <description>OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.  

Security Fix(es):  

  * openssh: OpenSSH GSSAPI: Information disclosure or denial of service due to uninitialized variables (CVE-2026-3497)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-02"/>
          <updated date="2026-04-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2447085" id="2447085"></bugzilla>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-3497" impact="Important" cwe="CWE-824" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-3497</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266463001" comment="openssh is earlier than 0:9.9p1-13.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126002" comment="openssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266463002" comment="openssh-askpass is earlier than 0:9.9p1-13.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126004" comment="openssh-askpass is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266463003" comment="openssh-clients is earlier than 0:9.9p1-13.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126006" comment="openssh-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266463004" comment="openssh-keycat is earlier than 0:9.9p1-13.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126008" comment="openssh-keycat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266463005" comment="openssh-keysign is earlier than 0:9.9p1-13.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126010" comment="openssh-keysign is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266463006" comment="openssh-server is earlier than 0:9.9p1-13.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126012" comment="openssh-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202623102" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:23102: delve security update (Important)</title>
        <reference ref_id="CVE-2026-32280" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32280"/>
        <reference ref_id="CVE-2026-32281" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32281"/>
        <reference ref_id="CVE-2026-32283" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32283"/>
        <reference ref_id="RHSA-2026:23102" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:23102"/>
        <reference ref_id="ALSA-2026:23102" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-23102.html"/>
        <description>Delve is a debugger for the Go programming language. The goal of the project is to provide a simple, full featured debugging tool for Go. Delve should be easy to invoke and easy to use. Chances are if you're using a debugger, things aren't going your way. With that in mind, Delve should stay out of your way as much as possible.  

Security Fix(es):  

  * crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation (CVE-2026-32281)
  * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283)
  * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-04"/>
          <updated date="2026-06-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2456333" id="2456333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456338" id="2456338"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456339" id="2456339"></bugzilla>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32280" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32280</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32281" impact="Moderate" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32281</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32283" impact="Important" cwe="CWE-764" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202623102001" comment="delve is earlier than 0:1.26.1-2.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259317002" comment="delve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268472" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8472: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2026-26171" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26171"/>
        <reference ref_id="CVE-2026-32178" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32178"/>
        <reference ref_id="CVE-2026-32203" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32203"/>
        <reference ref_id="CVE-2026-33116" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33116"/>
        <reference ref_id="RHSA-2026:8472" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8472"/>
        <reference ref_id="ALSA-2026:8472" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8472.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.116 and .NET Runtime 9.0.15.Security Fix(es):  

  * dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)
  * dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)
  * dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)
  * dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-16"/>
          <updated date="2026-04-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457739" id="2457739"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457740" id="2457740"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457741" id="2457741"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457781" id="2457781"></bugzilla>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-26171" impact="Important" cwe="CWE-776" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26171</cve>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-32178" impact="Important" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-32178</cve>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-32203" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32203</cve>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-33116" impact="Important" cwe="CWE-776" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33116</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472005" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472006" comment="dotnet-runtime-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472007" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472008" comment="dotnet-sdk-9.0 is earlier than 0:9.0.116-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472009" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.116-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472010" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.116-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472011" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.15-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472012" comment="dotnet-templates-9.0 is earlier than 0:9.0.116-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472013" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.116-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268472014" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.116-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268492" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8492: libarchive security update (Important)</title>
        <reference ref_id="CVE-2026-4424" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4424"/>
        <reference ref_id="RHSA-2026:8492" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8492"/>
        <reference ref_id="ALSA-2026:8492" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8492.html"/>
        <description>The libarchive programming library can create and read several different streaming archive formats, including GNU tar, cpio, and ISO 9660 CD-ROM images. Libarchive is used notably in the bsdtar utility, scripting language bindings such as python-libarchive, and several popular desktop file managers.  

Security Fix(es):  

  * libarchive: libarchive: Information disclosure via heap out-of-bounds read in RAR archive processing (CVE-2026-4424)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-16"/>
          <updated date="2026-04-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2449006" id="2449006"></bugzilla>
          <cve public="20260319" href="https://access.redhat.com/security/cve/CVE-2026-4424" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-4424</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268492001" comment="bsdtar is earlier than 0:3.7.7-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420002" comment="bsdtar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268492002" comment="libarchive is earlier than 0:3.7.7-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420004" comment="libarchive is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268492003" comment="libarchive-devel is earlier than 0:3.7.7-8.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259420006" comment="libarchive-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266906" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6906: nginx security update (Important)</title>
        <reference ref_id="CVE-2026-27651" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27651"/>
        <reference ref_id="CVE-2026-27654" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27654"/>
        <reference ref_id="CVE-2026-27784" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27784"/>
        <reference ref_id="CVE-2026-32647" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32647"/>
        <reference ref_id="RHSA-2026:6906" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6906"/>
        <reference ref_id="ALSA-2026:6906" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6906.html"/>
        <description>nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.   

Security Fix(es):  

  * nginx: NGINX: Denial of Service or Code Execution via specially crafted MP4 files (CVE-2026-32647)
  * NGINX: NGINX: Denial of Service or file modification via buffer overflow in ngx_http_dav_module (CVE-2026-27654)
  * NGINX: NGINX: Denial of Service due to memory corruption via crafted MP4 file (CVE-2026-27784)
  * NGINX: NGINX: Denial of Service via undisclosed requests when ngx_mail_auth_http_module is enabled (CVE-2026-27651)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-07"/>
          <updated date="2026-04-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2449598" id="2449598"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450776" id="2450776"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450785" id="2450785"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450791" id="2450791"></bugzilla>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-27651" impact="Important" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27651</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-27654" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2026-27654</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-27784" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27784</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-32647" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-32647</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906001" comment="nginx is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705002" comment="nginx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906002" comment="nginx-core is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705004" comment="nginx-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906003" comment="nginx-mod-http-image-filter is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705006" comment="nginx-mod-http-image-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906004" comment="nginx-mod-http-perl is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705008" comment="nginx-mod-http-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906005" comment="nginx-mod-http-xslt-filter is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705010" comment="nginx-mod-http-xslt-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906006" comment="nginx-mod-mail is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705012" comment="nginx-mod-mail is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906007" comment="nginx-mod-stream is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705014" comment="nginx-mod-stream is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906008" comment="nginx-mod-devel is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705016" comment="nginx-mod-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906009" comment="nginx-all-modules is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705018" comment="nginx-all-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266906010" comment="nginx-filesystem is earlier than 2:1.26.3-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705020" comment="nginx-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268458" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8458: freerdp security update (Important)</title>
        <reference ref_id="CVE-2026-33983" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33983"/>
        <reference ref_id="CVE-2026-33984" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33984"/>
        <reference ref_id="RHSA-2026:8458" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8458"/>
        <reference ref_id="ALSA-2026:8458" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8458.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * FreeRDP: FreeRDP: Heap buffer overflow allows arbitrary code execution via crafted pixel data (CVE-2026-33984)
  * FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages (CVE-2026-33983)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-16"/>
          <updated date="2026-04-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453219" id="2453219"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453220" id="2453220"></bugzilla>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-33983" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33983</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-33984" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33984</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268458001" comment="freerdp is earlier than 2:3.10.3-5.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268458002" comment="libwinpr is earlier than 2:3.10.3-5.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268458003" comment="freerdp-libs is earlier than 2:3.10.3-5.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268458004" comment="freerdp-devel is earlier than 2:3.10.3-5.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268458005" comment="freerdp-server is earlier than 2:3.10.3-5.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268458006" comment="libwinpr-devel is earlier than 2:3.10.3-5.el10_1.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20268470" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:8470: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2026-26171" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26171"/>
        <reference ref_id="CVE-2026-32178" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32178"/>
        <reference ref_id="CVE-2026-32203" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32203"/>
        <reference ref_id="CVE-2026-33116" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33116"/>
        <reference ref_id="RHSA-2026:8470" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:8470"/>
        <reference ref_id="ALSA-2026:8470" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-8470.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.126 and .NET Runtime 8.0.26.Security Fix(es):  

  * dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)
  * dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)
  * dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)
  * dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-16"/>
          <updated date="2026-04-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457739" id="2457739"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457740" id="2457740"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457741" id="2457741"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457781" id="2457781"></bugzilla>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-26171" impact="Important" cwe="CWE-776" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26171</cve>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-32178" impact="Important" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-32178</cve>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-32203" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32203</cve>
          <cve public="20260414" href="https://access.redhat.com/security/cve/CVE-2026-33116" impact="Important" cwe="CWE-776" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33116</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470001" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470002" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470003" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470004" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470005" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470006" comment="dotnet-runtime-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470007" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470008" comment="dotnet-sdk-8.0 is earlier than 0:8.0.126-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470009" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.126-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470010" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.26-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470011" comment="dotnet-templates-8.0 is earlier than 0:8.0.126-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268470012" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.126-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636782" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36782: aardvark-dns security update (Moderate)</title>
        <reference ref_id="CVE-2026-35406" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35406"/>
        <reference ref_id="RHSA-2026:36782" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36782"/>
        <reference ref_id="ALSA-2026:36782" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36782.html"/>
        <description>Authoritative DNS server for A/AAAA container records Forwards other request to configured resolvers. Read more about configuration in `src/backend/mod.rs`.  

Security Fix(es):  

  * aardvark-dns: Aardvark-dns: Denial of Service via truncated TCP DNS query and connection reset (CVE-2026-35406)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2456280" id="2456280"></bugzilla>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-35406" impact="Moderate" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35406</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202636782001" comment="aardvark-dns is earlier than 2:1.17.1-1.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202636782002" comment="aardvark-dns is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202620606" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:20606: ruby4.0 security update (Important)</title>
        <reference ref_id="CVE-2026-33210" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33210"/>
        <reference ref_id="CVE-2026-41316" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-41316"/>
        <reference ref_id="RHSA-2026:20606" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:20606"/>
        <reference ref_id="ALSA-2026:20606" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-20606.html"/>
        <description>Ruby is the interpreted scripting language for quick and easy object-oriented programming. It has many features to process text files and to do system management tasks (as in Perl). It is simple, straight-forward, and extensible.  

Security Fix(es):  

  * ruby/json: Ruby JSON: Denial of Service or Information Disclosure via format string injection (CVE-2026-33210)
  * erb: ERB: Arbitrary code execution via deserialization bypass (CVE-2026-41316)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-26"/>
          <updated date="2026-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2449871" id="2449871"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2461369" id="2461369"></bugzilla>
          <cve public="20260320" href="https://access.redhat.com/security/cve/CVE-2026-33210" impact="Important" cwe="CWE-134" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H">CVE-2026-33210</cve>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-41316" impact="Important" cwe="CWE-502" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-41316</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606001" comment="ruby4.0-devel is earlier than 0:4.0.3-34.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606002" comment="ruby4.0-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606003" comment="ruby4.0-rubygem-mysql2 is earlier than 0:0.5.7-34.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606004" comment="ruby4.0-rubygem-mysql2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606005" comment="ruby4.0-rubygem-pg is earlier than 0:1.6.3-34.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606006" comment="ruby4.0-rubygem-pg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606007" comment="ruby4.0 is earlier than 0:4.0.3-34.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606008" comment="ruby4.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606009" comment="ruby4.0-doc is earlier than 0:4.0.3-34.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606010" comment="ruby4.0-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202612423" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:12423: libcap security update (Important)</title>
        <reference ref_id="CVE-2026-4878" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4878"/>
        <reference ref_id="RHSA-2026:12423" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:12423"/>
        <reference ref_id="ALSA-2026:12423" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-12423.html"/>
        <description>Libcap is a library for getting and setting POSIX.1e (formerly POSIX 6) draft 15 capabilities.  

Security Fix(es):  

  * libcap: libcap: Privilege escalation via TOCTOU race condition in cap_set_file() (CVE-2026-4878)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-30"/>
          <updated date="2026-04-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451615" id="2451615"></bugzilla>
          <cve public="20260406" href="https://access.redhat.com/security/cve/CVE-2026-4878" impact="Important" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4878</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612423001" comment="libcap is earlier than 0:2.69-7.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612423002" comment="libcap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612423003" comment="libcap-devel is earlier than 0:2.69-7.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612423004" comment="libcap-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202612265" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:12265: libtiff security update (Important)</title>
        <reference ref_id="CVE-2026-4775" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4775"/>
        <reference ref_id="RHSA-2026:12265" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:12265"/>
        <reference ref_id="ALSA-2026:12265" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-12265.html"/>
        <description>The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.  

Security Fix(es):  

  * libtiff: libtiff: Arbitrary code execution or denial of service via signed integer overflow in TIFF file processing (CVE-2026-4775)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-30"/>
          <updated date="2026-04-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2450768" id="2450768"></bugzilla>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-4775" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-4775</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612265001" comment="libtiff-devel is earlier than 0:4.6.0-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156004" comment="libtiff-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612265002" comment="libtiff is earlier than 0:4.6.0-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156002" comment="libtiff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202612265003" comment="libtiff-tools is earlier than 0:4.6.0-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156006" comment="libtiff-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:2026000003" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:A003: kernel security update (Important)</title>
        <reference ref_id="CVE-2026-31431" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31431"/>
        <reference ref_id="ALSA-2026:A003" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-A003.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: crypto: algif_aead - Revert to operating out-of-place (CVE-2026-31431)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-01"/>
          <updated date="2026-05-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/show_bug.cgi?id=2460538" id="show_bug.cgi?id=2460538"></bugzilla>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-31431" impact="Important" cwe="CWE-1288" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31431</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003001" comment="kernel-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003002" comment="kernel-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003003" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003004" comment="kernel-debug-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003005" comment="kernel-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003006" comment="kernel-rt-debug-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003007" comment="kernel-rt-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003008" comment="kernel-rt-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003009" comment="kernel-rt-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003010" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003011" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003012" comment="kernel-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003013" comment="perf is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003014" comment="kernel-uki-virt is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003015" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003016" comment="libperf is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003017" comment="kernel-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003018" comment="kernel-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003019" comment="kernel-rt-debug is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003020" comment="kernel-headers is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003021" comment="kernel-rt-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003022" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003023" comment="kernel-rt-debug-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003024" comment="kernel-rt-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003025" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003026" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003027" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003028" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003029" comment="rtla is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003030" comment="kernel-rt-debug-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003031" comment="kernel-rt-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003032" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003033" comment="kernel-debug-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003034" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003035" comment="kernel-debug is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003036" comment="kernel-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003037" comment="kernel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003038" comment="python3-perf is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003039" comment="kernel-tools is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003040" comment="kernel-debug-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003041" comment="kernel-rt-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003042" comment="kernel-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003043" comment="kernel-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003044" comment="kernel-debug-uki-virt-addons is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003045" comment="kernel-debug-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003046" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003047" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003048" comment="libperf-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003049" comment="libperf-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003050" comment="kernel-tools-libs is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003051" comment="kernel-rt-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003052" comment="kernel-rt-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003053" comment="kernel-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003054" comment="kernel-rt is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003055" comment="kernel-debug-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003056" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003057" comment="kernel-selftests-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003058" comment="kernel-selftests-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003059" comment="kernel-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003060" comment="rv is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003061" comment="kernel-rt-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003062" comment="kernel-debug-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003063" comment="kernel-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003064" comment="kernel-cross-headers is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003065" comment="kernel-rt-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003066" comment="kernel-rt-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003067" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003068" comment="kernel-zfcpdump-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003069" comment="kernel-zfcpdump-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003070" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003071" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003072" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003073" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003074" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003075" comment="kernel-zfcpdump-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003076" comment="kernel-zfcpdump-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003077" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003078" comment="kernel-64k-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003079" comment="kernel-64k-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003080" comment="kernel-64k-debug-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003081" comment="kernel-64k-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003082" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003083" comment="kernel-64k-debug-uki-virt is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003084" comment="kernel-64k-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003085" comment="kernel-64k-uki-virt-addons is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003086" comment="kernel-64k-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003087" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003088" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003089" comment="kernel-rt-64k is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003090" comment="kernel-rt-64k-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003091" comment="kernel-rt-64k-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003092" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003093" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003094" comment="kernel-64k-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003095" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003096" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003097" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003098" comment="kernel-64k-debug-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003099" comment="kernel-64k-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003100" comment="kernel-rt-64k-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003101" comment="kernel-rt-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003102" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003103" comment="kernel-64k-uki-virt is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003104" comment="kernel-64k-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003105" comment="kernel-rt-64k-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003106" comment="kernel-rt-64k-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003107" comment="kernel-64k-debug is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003108" comment="kernel-rt-64k-debug-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003109" comment="kernel-rt-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003110" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003111" comment="kernel-64k-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003112" comment="kernel-64k is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003113" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003114" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003115" comment="kernel-rt-64k-debug-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003116" comment="kernel-rt-64k-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003117" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003118" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003119" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003120" comment="kernel-64k-modules-internal is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003121" comment="kernel-64k-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003122" comment="kernel-64k-debug-uki-virt-addons is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003123" comment="kernel-64k-debug-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003124" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003125" comment="kernel-64k-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003126" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003127" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003128" comment="kernel-rt-64k-debug-modules-partner is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003129" comment="kernel-rt-64k-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003130" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003131" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003132" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003133" comment="kernel-doc is earlier than 0:6.12.0-124.52.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202621380" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:21380: firefox security update (Important)</title>
        <reference ref_id="CVE-2026-8388" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8388"/>
        <reference ref_id="CVE-2026-8391" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8391"/>
        <reference ref_id="CVE-2026-8401" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8401"/>
        <reference ref_id="CVE-2026-8946" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8946"/>
        <reference ref_id="CVE-2026-8947" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8947"/>
        <reference ref_id="CVE-2026-8950" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8950"/>
        <reference ref_id="CVE-2026-8953" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8953"/>
        <reference ref_id="CVE-2026-8954" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8954"/>
        <reference ref_id="CVE-2026-8955" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8955"/>
        <reference ref_id="CVE-2026-8956" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8956"/>
        <reference ref_id="CVE-2026-8957" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8957"/>
        <reference ref_id="CVE-2026-8958" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8958"/>
        <reference ref_id="CVE-2026-8961" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8961"/>
        <reference ref_id="CVE-2026-8962" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8962"/>
        <reference ref_id="CVE-2026-8968" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8968"/>
        <reference ref_id="CVE-2026-8970" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8970"/>
        <reference ref_id="CVE-2026-8974" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8974"/>
        <reference ref_id="CVE-2026-8975" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8975"/>
        <reference ref_id="RHSA-2026:21380" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:21380"/>
        <reference ref_id="ALSA-2026:21380" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-21380.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: Incorrect boundary conditions in the JavaScript Engine: JIT component (CVE-2026-8388)
  * firefox: Other issue in the JavaScript Engine component (CVE-2026-8391)
  * firefox: Sandbox escape in the Profile Backup component (CVE-2026-8401)
  * firefox: Integer overflow in the Networking: JAR component (CVE-2026-8956)
  * firefox: Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 (CVE-2026-8975)
  * firefox: Privilege escalation in the DOM: Workers component (CVE-2026-8955)
  * firefox: Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component (CVE-2026-8968)
  * firefox: Incorrect boundary conditions, integer overflow in the Audio/Video component (CVE-2026-8954)
  * firefox: Information disclosure, sandbox escape in the Security: Process Sandboxing component (CVE-2026-8958)
  * firefox: Incorrect boundary conditions in the Audio/Video: Web Codecs component (CVE-2026-8946)
  * firefox: Privilege escalation in the Security component (CVE-2026-8970)
  * firefox: Same-origin policy bypass in the Networking: HTTP component (CVE-2026-8950)
  * firefox: Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 151 (CVE-2026-8974)
  * firefox: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-8953)
  * firefox: Spoofing issue in the Form Autofill component (CVE-2026-8961)
  * firefox: Use-after-free in the DOM: Bindings (WebIDL) component (CVE-2026-8947)
  * firefox: Mitigation bypass in the DOM: Security component (CVE-2026-8962)
  * firefox: Privilege escalation in the Enterprise Policies component (CVE-2026-8957)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-27"/>
          <updated date="2026-05-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476469" id="2476469"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2476475" id="2476475"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2476492" id="2476492"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479839" id="2479839"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479840" id="2479840"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479842" id="2479842"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479846" id="2479846"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479847" id="2479847"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479848" id="2479848"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479849" id="2479849"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479852" id="2479852"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479853" id="2479853"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479855" id="2479855"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479860" id="2479860"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479871" id="2479871"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479873" id="2479873"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479876" id="2479876"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479880" id="2479880"></bugzilla>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-8388" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8388</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-8391" impact="Important" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8391</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-8401" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8401</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8946" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8946</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8947" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8947</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8950" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8950</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8953" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8953</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8954" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8954</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8955" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8955</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8956" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8956</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8957" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8957</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8958" impact="Moderate" cwe="CWE-403" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8958</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8961" impact="Low" cwe="CWE-472" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8961</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8962" impact="Low" cwe="CWE-358" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8962</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8968" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8968</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8970" impact="Low" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8970</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8974" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8974</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8975" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8975</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202621380001" comment="firefox is earlier than 0:140.11.0-1.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20269666" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:9666: wireshark security update (Moderate)</title>
        <reference ref_id="CVE-2026-3201" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3201"/>
        <reference ref_id="CVE-2026-3203" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3203"/>
        <reference ref_id="RHSA-2026:9666" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:9666"/>
        <reference ref_id="ALSA-2026:9666" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-9666.html"/>
        <description>The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.  

Security Fix(es):  

  * wireshark: Buffer Over-read in Wireshark (CVE-2026-3203)
  * wireshark: Improperly Controlled Sequential Memory Allocation in Wireshark (CVE-2026-3201)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-22"/>
          <updated date="2026-04-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2442639" id="2442639"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442641" id="2442641"></bugzilla>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-3201" impact="Moderate" cwe="CWE-1325" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-3201</cve>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-3203" impact="Moderate" cwe="CWE-126" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-3203</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269666001" comment="wireshark is earlier than 1:4.4.2-4.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121002" comment="wireshark is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269666002" comment="wireshark-cli is earlier than 1:4.4.2-4.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121004" comment="wireshark-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269666003" comment="wireshark-devel is earlier than 1:4.4.2-4.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121006" comment="wireshark-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613380" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13380: openssh security update (Important)</title>
        <reference ref_id="CVE-2026-35385" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35385"/>
        <reference ref_id="CVE-2026-35386" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35386"/>
        <reference ref_id="CVE-2026-35387" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35387"/>
        <reference ref_id="CVE-2026-35388" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35388"/>
        <reference ref_id="CVE-2026-35414" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35414"/>
        <reference ref_id="RHSA-2026:13380" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13380"/>
        <reference ref_id="ALSA-2026:13380" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13380.html"/>
        <description>OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.  

Security Fix(es):  

  * OpenSSH: OpenSSH: Privilege escalation via scp legacy protocol when not preserving file mode (CVE-2026-35385)
  * OpenSSH: OpenSSH: Security bypass via mishandling of authorized_keys principals option (CVE-2026-35414)
  * OpenSSH: OpenSSH: Information disclosure due to unintended cryptographic algorithm usage (CVE-2026-35387)
  * OpenSSH: OpenSSH: Low integrity impact from unconfirmed proxy-mode multiplexing sessions (CVE-2026-35388)
  * OpenSSH: OpenSSH: Arbitrary command execution via shell metacharacters in username (CVE-2026-35386)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-04"/>
          <updated date="2026-05-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2454469" id="2454469"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454490" id="2454490"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454494" id="2454494"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454500" id="2454500"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454506" id="2454506"></bugzilla>
          <cve public="20260402" href="https://access.redhat.com/security/cve/CVE-2026-35385" impact="Important" cwe="CWE-281" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-35385</cve>
          <cve public="20260402" href="https://access.redhat.com/security/cve/CVE-2026-35386" impact="Low" cwe="CWE-78" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2026-35386</cve>
          <cve public="20260402" href="https://access.redhat.com/security/cve/CVE-2026-35387" impact="Low" cwe="CWE-115" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N">CVE-2026-35387</cve>
          <cve public="20260402" href="https://access.redhat.com/security/cve/CVE-2026-35388" impact="Low" cwe="CWE-306" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:N">CVE-2026-35388</cve>
          <cve public="20260402" href="https://access.redhat.com/security/cve/CVE-2026-35414" impact="Moderate" cwe="CWE-168" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-35414</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613380001" comment="openssh is earlier than 0:9.9p1-14.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126002" comment="openssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613380002" comment="openssh-askpass is earlier than 0:9.9p1-14.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126004" comment="openssh-askpass is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613380003" comment="openssh-clients is earlier than 0:9.9p1-14.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126006" comment="openssh-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613380004" comment="openssh-keycat is earlier than 0:9.9p1-14.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126008" comment="openssh-keycat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613380005" comment="openssh-keysign is earlier than 0:9.9p1-14.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126010" comment="openssh-keysign is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613380006" comment="openssh-server is earlier than 0:9.9p1-14.el10_1.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126012" comment="openssh-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622529" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22529: libexif security update (Moderate)</title>
        <reference ref_id="CVE-2026-40386" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-40386"/>
        <reference ref_id="RHSA-2026:22529" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22529"/>
        <reference ref_id="ALSA-2026:22529" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22529.html"/>
        <description>The libexif packages provide a library for extracting extra information from image files.  

Security Fix(es):  

  * libexif: libexif: Denial of Service and information disclosure via integer underflow in MakerNote decoding (CVE-2026-40386)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-02"/>
          <updated date="2026-06-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457689" id="2457689"></bugzilla>
          <cve public="20260412" href="https://access.redhat.com/security/cve/CVE-2026-40386" impact="Moderate" cwe="CWE-191" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L">CVE-2026-40386</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622529001" comment="libexif is earlier than 0:0.6.24-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622529002" comment="libexif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622529003" comment="libexif-devel is earlier than 0:0.6.24-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622529004" comment="libexif-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622529005" comment="libexif-doc is earlier than 0:0.6.24-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622529006" comment="libexif-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20269693" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:9693: java-25-openjdk security update (Important)</title>
        <reference ref_id="CVE-2026-22007" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22007"/>
        <reference ref_id="CVE-2026-22008" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22008"/>
        <reference ref_id="CVE-2026-22013" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22013"/>
        <reference ref_id="CVE-2026-22016" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22016"/>
        <reference ref_id="CVE-2026-22018" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22018"/>
        <reference ref_id="CVE-2026-22021" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-22021"/>
        <reference ref_id="CVE-2026-23865" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23865"/>
        <reference ref_id="CVE-2026-26740" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26740"/>
        <reference ref_id="CVE-2026-33416" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33416"/>
        <reference ref_id="CVE-2026-33636" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33636"/>
        <reference ref_id="CVE-2026-34268" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34268"/>
        <reference ref_id="CVE-2026-34282" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34282"/>
        <reference ref_id="RHSA-2026:9693" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:9693"/>
        <reference ref_id="ALSA-2026:9693" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-9693.html"/>
        <description>The OpenJDK 25 packages provide the OpenJDK 25 Java Runtime Environment and the OpenJDK 25 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Enhance crypto algorithm support (CVE-2026-22007)
  * JDK: Improved Arena allocations (CVE-2026-22008)
  * JDK: Improve Kerberos credentialing (CVE-2026-22013)
  * JDK: Enhance Path Factories Redux (CVE-2026-22016)
  * JDK: Enhance Zip file reading (CVE-2026-22018)
  * JDK: Enhance certificate chain validation (CVE-2026-22021)
  * JDK: Updating FreeType 2.14.1 (CVE-2026-23865)
  * JDK: Enhance TLS connection handling (CVE-2026-34282)
  * JDK: Enhance key generation (CVE-2026-34268)


This release also updates a number of third-party libraries included in the JDK. The libraries themselves are affected by the following CVEs, but this is not a statement that the JDK itself is affected:  

  * giflib: Denial of Service via buffer overflow in EGifGCBToExtension (CVE-2026-26740)
  * libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion (CVE-2026-33636)
  * libpng: Arbitrary code execution due to use-after-free vulnerability (CVE-2026-33416)


Bug Fix(es):  

  * When copying files, OpenJDK 25 prefers to use the copy_file_range native function for performance reasons, only falling back to sendfile when this fails. However, in previous OpenJDK 25 releases, a response of EOPNOTSUPP (operation not supported) did not cause the JDK to fall back to sendfile. This is rectified in this release. (AlmaLinux-169939, AlmaLinux-169937)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-22"/>
          <updated date="2026-04-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22007" impact="Low" cwe="CWE-327" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-22007</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22008" impact="Low" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-22008</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22013" impact="Moderate" cwe="CWE-319" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-22013</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22016" impact="Important" cwe="CWE-611" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-22016</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22018" impact="Low" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-22018</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-22021" impact="Moderate" cwe="CWE-674" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-22021</cve>
          <cve public="20260302" href="https://access.redhat.com/security/cve/CVE-2026-23865" impact="Moderate" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L">CVE-2026-23865</cve>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-26740" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26740</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33416" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33416</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33636" impact="Moderate" cwe="CWE-124" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-33636</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34268" impact="Low" cwe="CWE-327" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-34268</cve>
          <cve public="20260421" href="https://access.redhat.com/security/cve/CVE-2026-34282" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34282</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693001" comment="java-25-openjdk is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933002" comment="java-25-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693002" comment="java-25-openjdk-crypto-adapter is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933004" comment="java-25-openjdk-crypto-adapter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693003" comment="java-25-openjdk-demo is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933006" comment="java-25-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693004" comment="java-25-openjdk-devel is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933008" comment="java-25-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693005" comment="java-25-openjdk-headless is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933010" comment="java-25-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693006" comment="java-25-openjdk-javadoc is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933012" comment="java-25-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693007" comment="java-25-openjdk-javadoc-zip is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933014" comment="java-25-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693008" comment="java-25-openjdk-jmods is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933016" comment="java-25-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693009" comment="java-25-openjdk-src is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933018" comment="java-25-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693010" comment="java-25-openjdk-static-libs is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933020" comment="java-25-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693011" comment="java-25-openjdk-crypto-adapter-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933022" comment="java-25-openjdk-crypto-adapter-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693012" comment="java-25-openjdk-crypto-adapter-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933024" comment="java-25-openjdk-crypto-adapter-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693013" comment="java-25-openjdk-demo-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933026" comment="java-25-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693014" comment="java-25-openjdk-demo-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933028" comment="java-25-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693015" comment="java-25-openjdk-devel-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933030" comment="java-25-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693016" comment="java-25-openjdk-devel-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933032" comment="java-25-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693017" comment="java-25-openjdk-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933034" comment="java-25-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693018" comment="java-25-openjdk-headless-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933036" comment="java-25-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693019" comment="java-25-openjdk-headless-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933038" comment="java-25-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693020" comment="java-25-openjdk-jmods-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933040" comment="java-25-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693021" comment="java-25-openjdk-jmods-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933042" comment="java-25-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693022" comment="java-25-openjdk-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933044" comment="java-25-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693023" comment="java-25-openjdk-src-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933046" comment="java-25-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693024" comment="java-25-openjdk-src-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933048" comment="java-25-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693025" comment="java-25-openjdk-static-libs-fastdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933050" comment="java-25-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269693026" comment="java-25-openjdk-static-libs-slowdebug is earlier than 1:25.0.3.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260933052" comment="java-25-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20269638" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:9638: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2026-5731" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5731"/>
        <reference ref_id="CVE-2026-5732" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5732"/>
        <reference ref_id="CVE-2026-5734" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5734"/>
        <reference ref_id="CVE-2026-33416" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33416"/>
        <reference ref_id="CVE-2026-33636" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33636"/>
        <reference ref_id="RHSA-2026:9638" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:9638"/>
        <reference ref_id="ALSA-2026:9638" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-9638.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * libpng: libpng: Arbitrary code execution due to use-after-free vulnerability (CVE-2026-33416)
  * libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion (CVE-2026-33636)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 (CVE-2026-5734)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 (CVE-2026-5731)
  * firefox: thunderbird: Incorrect boundary conditions, integer overflow in the Graphics: Text component (CVE-2026-5732)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-22"/>
          <updated date="2026-04-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451805" id="2451805"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451819" id="2451819"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455897" id="2455897"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455901" id="2455901"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455908" id="2455908"></bugzilla>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-5731" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5731</cve>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-5732" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5732</cve>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-5734" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5734</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33416" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33416</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33636" impact="Moderate" cwe="CWE-124" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-33636</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20269638001" comment="thunderbird is earlier than 0:140.9.1-1.el10_1.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20269264" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:9264: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-39766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39766"/>
        <reference ref_id="CVE-2025-68741" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68741"/>
        <reference ref_id="RHSA-2026:9264" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:9264"/>
        <reference ref_id="ALSA-2026:9264" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-9264.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: net/sched: Make cake_enqueue return NET_XMIT_CN when past buffer_limit (CVE-2025-39766)
  * kernel: scsi: qla2xxx: Fix improper freeing of purex item (CVE-2025-68741)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-21"/>
          <updated date="2026-04-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2394648" id="2394648"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2425046" id="2425046"></bugzilla>
          <cve public="20250911" href="https://access.redhat.com/security/cve/CVE-2025-39766" impact="Moderate" cwe="CWE-399" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-39766</cve>
          <cve public="20251224" href="https://access.redhat.com/security/cve/CVE-2025-68741" impact="Important" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2025-68741</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264001" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264002" comment="kernel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264003" comment="kernel-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264004" comment="kernel-debug is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264005" comment="kernel-debug-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264006" comment="kernel-debug-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264007" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264008" comment="kernel-debug-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264009" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264010" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264011" comment="kernel-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264012" comment="kernel-devel-matched is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264013" comment="kernel-headers is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264014" comment="kernel-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264015" comment="kernel-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264016" comment="kernel-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264018" comment="kernel-rt is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264019" comment="kernel-rt-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264020" comment="kernel-rt-debug is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264026" comment="kernel-rt-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264027" comment="kernel-rt-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264030" comment="kernel-tools is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264031" comment="kernel-tools-libs is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264034" comment="perf is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264035" comment="python3-perf is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264036" comment="rtla is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264037" comment="rv is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264038" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264045" comment="kernel-64k is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264046" comment="kernel-64k-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264047" comment="kernel-64k-debug is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264054" comment="kernel-64k-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264073" comment="libperf is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20269264075" comment="kernel-doc is earlier than 0:6.12.0-124.52.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202621754" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:21754: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2026-42899" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42899"/>
        <reference ref_id="RHSA-2026:21754" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:21754"/>
        <reference ref_id="ALSA-2026:21754" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-21754.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.117 and .NET Runtime 9.0.16.Security Fix(es):  

  * dotnet: .NET: infinite loop allows an attacker to cause a denial of service (CVE-2026-42899)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-28"/>
          <updated date="2026-05-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476605" id="2476605"></bugzilla>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-42899" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42899</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754005" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754006" comment="dotnet-runtime-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754007" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754008" comment="dotnet-sdk-9.0 is earlier than 0:9.0.117-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754009" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.117-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754010" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.117-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754011" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.16-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754012" comment="dotnet-templates-9.0 is earlier than 0:9.0.117-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754013" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.117-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621754014" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.117-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202621757" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:21757: flatpak security update (Important)</title>
        <reference ref_id="CVE-2026-34078" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34078"/>
        <reference ref_id="CVE-2026-34079" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34079"/>
        <reference ref_id="RHSA-2026:21757" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:21757"/>
        <reference ref_id="ALSA-2026:21757" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-21757.html"/>
        <description>Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux.  

Security Fix(es):  

  * flatpak: Flatpak: Arbitrary code execution via crafted symlinks in sandbox-expose options (CVE-2026-34078)
  * flatpak: Flatpak: Arbitrary file deletion on host via improper cache file path validation (CVE-2026-34079)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-28"/>
          <updated date="2026-05-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2456276" id="2456276"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456284" id="2456284"></bugzilla>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-34078" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H">CVE-2026-34078</cve>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-34079" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:L">CVE-2026-34079</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757001" comment="flatpak is earlier than 0:1.16.0-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757002" comment="flatpak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757003" comment="flatpak-libs is earlier than 0:1.16.0-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757004" comment="flatpak-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757005" comment="flatpak-session-helper is earlier than 0:1.16.0-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757006" comment="flatpak-session-helper is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757007" comment="flatpak-devel is earlier than 0:1.16.0-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757008" comment="flatpak-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757009" comment="flatpak-selinux is earlier than 0:1.16.0-9.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202621757010" comment="flatpak-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613643" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13643: osbuild-composer security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:13643" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13643"/>
        <reference ref_id="ALSA-2026:13643" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13643.html"/>
        <description>A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-05"/>
          <updated date="2026-05-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613643001" comment="osbuild-composer is earlier than 0:149-6.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623002" comment="osbuild-composer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613643002" comment="osbuild-composer-core is earlier than 0:149-6.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623004" comment="osbuild-composer-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613643003" comment="osbuild-composer-worker is earlier than 0:149-6.el10_1.alma.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259623006" comment="osbuild-composer-worker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20261838" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:1838: image-builder security update (Moderate)</title>
        <reference ref_id="CVE-2025-58183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-58183"/>
        <reference ref_id="RHSA-2026:1838" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:1838"/>
        <reference ref_id="ALSA-2026:1838" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-1838.html"/>
        <description>A local binary for building customized OS artifacts such as VM images and OSTree commits. Uses osbuild under the hood.  

Security Fix(es):  

  * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-02-03"/>
          <updated date="2026-02-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2407258" id="2407258"></bugzilla>
          <cve public="20251029" href="https://access.redhat.com/security/cve/CVE-2025-58183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-58183</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261838001" comment="image-builder is earlier than 0:31-3.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261838002" comment="image-builder is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613641" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13641: python-tornado security update (Moderate)</title>
        <reference ref_id="CVE-2026-31958" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31958"/>
        <reference ref_id="CVE-2026-35536" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35536"/>
        <reference ref_id="RHSA-2026:13641" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13641"/>
        <reference ref_id="ALSA-2026:13641" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13641.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * tornado-python: Tornado: Denial of Service via large multipart bodies (CVE-2026-31958)
  * tornado: Tornado: Cookie attribute injection due to improper handling of cookie arguments (CVE-2026-35536)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-05"/>
          <updated date="2026-05-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2446765" id="2446765"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454716" id="2454716"></bugzilla>
          <cve public="20260311" href="https://access.redhat.com/security/cve/CVE-2026-31958" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-31958</cve>
          <cve public="20260403" href="https://access.redhat.com/security/cve/CVE-2026-35536" impact="Moderate" cwe="CWE-88" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N">CVE-2026-35536</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202613641001" comment="python3-tornado is earlier than 0:6.5.5-1.el10_1.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258135002" comment="python3-tornado is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267342" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7342: kea security update (Important)</title>
        <reference ref_id="CVE-2026-3608" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3608"/>
        <reference ref_id="RHSA-2026:7342" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7342"/>
        <reference ref_id="ALSA-2026:7342" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7342.html"/>
        <description>DHCP implementation from Internet Systems Consortium, Inc. that features fully functional DHCPv4, DHCPv6 and Dynamic DNS servers. Both DHCP servers fully support server discovery, address assignment, renewal, rebinding and release. The DHCPv6 server supports prefix delegation. Both servers support DNS Update mechanism, using stand-alone DDNS daemon.  

Security Fix(es):  

  * Kea: Kea: Denial of Service via maliciously crafted message (CVE-2026-3608)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-09"/>
          <updated date="2026-04-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451139" id="2451139"></bugzilla>
          <cve public="20260325" href="https://access.redhat.com/security/cve/CVE-2026-3608" impact="Important" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-3608</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267342001" comment="kea is earlier than 0:3.0.1-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178002" comment="kea is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267342002" comment="kea-hooks is earlier than 0:3.0.1-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178004" comment="kea-hooks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267342003" comment="kea-libs is earlier than 0:3.0.1-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178006" comment="kea-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267342004" comment="kea-keama is earlier than 0:3.0.1-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178008" comment="kea-keama is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267342005" comment="kea-doc is earlier than 0:3.0.1-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259178010" comment="kea-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613498" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13498: dovecot security update (Important)</title>
        <reference ref_id="CVE-2025-59032" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-59032"/>
        <reference ref_id="CVE-2026-27857" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27857"/>
        <reference ref_id="CVE-2026-27858" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27858"/>
        <reference ref_id="RHSA-2026:13498" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13498"/>
        <reference ref_id="ALSA-2026:13498" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13498.html"/>
        <description>Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages.   

Security Fix(es):  

  * dovecot: ManageSieve: Denial of Service via crafted SASL initial response in AUTHENTICATE command (CVE-2025-59032)
  * dovecot: denial of service via crafted message before authentication (CVE-2026-27858)
  * dovecot: denial of service via specially crafted NOOP command (CVE-2026-27857)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-04"/>
          <updated date="2026-05-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2452172" id="2452172"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2452175" id="2452175"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2452179" id="2452179"></bugzilla>
          <cve public="20260327" href="https://access.redhat.com/security/cve/CVE-2025-59032" impact="Important" cwe="CWE-229" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-59032</cve>
          <cve public="20260327" href="https://access.redhat.com/security/cve/CVE-2026-27857" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27857</cve>
          <cve public="20260327" href="https://access.redhat.com/security/cve/CVE-2026-27858" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27858</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498001" comment="dovecot is earlier than 1:2.3.21-16.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498002" comment="dovecot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498003" comment="dovecot-mysql is earlier than 1:2.3.21-16.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498004" comment="dovecot-mysql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498005" comment="dovecot-pgsql is earlier than 1:2.3.21-16.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498006" comment="dovecot-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498007" comment="dovecot-pigeonhole is earlier than 1:2.3.21-16.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498008" comment="dovecot-pigeonhole is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498009" comment="dovecot-devel is earlier than 1:2.3.21-16.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498010" comment="dovecot-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20263840" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:3840: image-builder security update (Important)</title>
        <reference ref_id="CVE-2025-61726" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61726"/>
        <reference ref_id="CVE-2025-61729" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-61729"/>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="RHSA-2026:3840" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:3840"/>
        <reference ref_id="ALSA-2026:3840" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-3840.html"/>
        <description>A local binary for building customized OS artifacts such as VM images and OSTree commits. Uses osbuild under the hood.  

Security Fix(es):  

  * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
  * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-03-05"/>
          <updated date="2026-03-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418462" id="2418462"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2434432" id="2434432"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <cve public="20260128" href="https://access.redhat.com/security/cve/CVE-2025-61726" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61726</cve>
          <cve public="20251202" href="https://access.redhat.com/security/cve/CVE-2025-61729" impact="Important" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-61729</cve>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263840001" comment="image-builder is earlier than 0:31-4.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20263840002" comment="image-builder is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267383" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7383: cockpit: Unauthenticated remote code execution due to SSH command-line argument injection (Critical)</title>
        <reference ref_id="CVE-2026-4631" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4631"/>
        <reference ref_id="RHSA-2026:7383" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7383"/>
        <reference ref_id="ALSA-2026:7383" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7383.html"/>
        <description>Cockpit enables users to administer GNU/Linux servers using a web browser. It  
offers network configuration, log inspection, diagnostic reports, SELinux  
troubleshooting, interactive command-line sessions, and more.  

Security Fix(es):  

  * cockpit: ws: be more explicit when handling hostnames on cli (CVE-2026-4631)


For more details about the security issue(s), including the impact, a CVSS  
score, acknowledgments, and other related information, refer to the CVE page(s)  
listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Critical</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-10"/>
          <updated date="2026-04-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-4631" impact="Critical" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-4631</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383001" comment="cockpit-ws is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383002" comment="cockpit-ws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383003" comment="cockpit-ws-selinux is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383004" comment="cockpit-ws-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383005" comment="cockpit is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383006" comment="cockpit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383007" comment="cockpit-storaged is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383008" comment="cockpit-storaged is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383009" comment="cockpit-system is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383010" comment="cockpit-system is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383011" comment="cockpit-bridge is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383012" comment="cockpit-bridge is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383013" comment="cockpit-doc is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383014" comment="cockpit-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383015" comment="cockpit-packagekit is earlier than 0:344-3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267383016" comment="cockpit-packagekit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613515" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13515: freeipmi security update (Moderate)</title>
        <reference ref_id="CVE-2026-33554" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33554"/>
        <reference ref_id="RHSA-2026:13515" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13515"/>
        <reference ref_id="ALSA-2026:13515" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13515.html"/>
        <description>The freeipmi packages contain an Intelligent Platform Management Interface (IPMI) remote console and system management software based on the IPMI specification.  

Security Fix(es):  

  * freeipmi: buffer overflows on response messages via ipmi-oem (CVE-2026-33554)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-04"/>
          <updated date="2026-05-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2450778" id="2450778"></bugzilla>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-33554" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33554</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515001" comment="freeipmi is earlier than 0:1.6.17-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515002" comment="freeipmi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515003" comment="freeipmi-bmc-watchdog is earlier than 0:1.6.17-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515004" comment="freeipmi-bmc-watchdog is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515005" comment="freeipmi-ipmidetectd is earlier than 0:1.6.17-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515006" comment="freeipmi-ipmidetectd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515007" comment="freeipmi-ipmiseld is earlier than 0:1.6.17-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515008" comment="freeipmi-ipmiseld is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515009" comment="freeipmi-devel is earlier than 0:1.6.17-1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515010" comment="freeipmi-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20266632" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:6632: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2025-38109" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38109"/>
        <reference ref_id="CVE-2026-23144" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23144"/>
        <reference ref_id="CVE-2026-23171" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23171"/>
        <reference ref_id="CVE-2026-23191" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23191"/>
        <reference ref_id="CVE-2026-23193" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23193"/>
        <reference ref_id="CVE-2026-23204" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23204"/>
        <reference ref_id="CVE-2026-23209" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23209"/>
        <reference ref_id="RHSA-2026:6632" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:6632"/>
        <reference ref_id="ALSA-2026:6632" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-6632.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel (net/mlx5): Use-after-free in ECVF vports unload leads to denial of service (CVE-2025-38109)
  * kernel: Linux kernel: Local denial of service and memory leak in DAMON sysfs via setup failure (CVE-2026-23144)
  * kernel: Linux kernel: Use-after-free in bonding module can cause system crash or arbitrary code execution (CVE-2026-23171)
  * kernel: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() (CVE-2026-23193)
  * kernel: macvlan: fix error recovery in macvlan_common_newlink() (CVE-2026-23209)
  * kernel: net/sched: cls_u32: use skb_header_pointer_careful() (CVE-2026-23204)
  * kernel: ALSA: aloop: Fix racy access at PCM trigger (CVE-2026-23191)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-06"/>
          <updated date="2026-04-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2376101" id="2376101"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439872" id="2439872"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439886" id="2439886"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439887" id="2439887"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439900" id="2439900"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439931" id="2439931"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439947" id="2439947"></bugzilla>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38109" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2025-38109</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23144" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2026-23144</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23171" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H">CVE-2026-23171</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23191" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-23191</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23193" impact="Moderate" cwe="CWE-364" cvss3="CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23193</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23204" impact="Moderate" cwe="CWE-1285" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-23204</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23209" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23209</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632001" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632002" comment="libperf is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632003" comment="kernel-cross-headers is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632004" comment="kernel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632005" comment="kernel-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632006" comment="kernel-debug is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632007" comment="kernel-rt is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632008" comment="kernel-debug-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632009" comment="kernel-debug-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632010" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632011" comment="kernel-debug-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632012" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632013" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632014" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632015" comment="kernel-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632016" comment="kernel-devel-matched is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632017" comment="kernel-headers is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632018" comment="kernel-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632019" comment="kernel-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632020" comment="kernel-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632021" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632022" comment="kernel-rt-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632023" comment="kernel-rt-debug is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632024" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632025" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632026" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632027" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632028" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632029" comment="kernel-rt-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632030" comment="kernel-rt-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632031" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632032" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632033" comment="kernel-tools is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632034" comment="kernel-tools-libs is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632035" comment="kernel-uki-virt is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632036" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632037" comment="perf is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632038" comment="python3-perf is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632039" comment="rtla is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632040" comment="rv is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632041" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632042" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632043" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632044" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632045" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632046" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632047" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632048" comment="kernel-64k is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632049" comment="kernel-64k-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632050" comment="kernel-64k-debug is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632051" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632052" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632053" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632054" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632055" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632056" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632057" comment="kernel-64k-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632058" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632059" comment="kernel-64k-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632060" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632061" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632062" comment="kernel-rt-64k is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632063" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632064" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632065" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632066" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632067" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632068" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632069" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632070" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632071" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632072" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632073" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266632075" comment="kernel-doc is earlier than 0:6.12.0-124.49.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613651" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13651: systemd security update (Moderate)</title>
        <reference ref_id="CVE-2026-29111" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-29111"/>
        <reference ref_id="RHSA-2026:13651" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13651"/>
        <reference ref_id="ALSA-2026:13651" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13651.html"/>
        <description>The systemd packages contain systemd, a system and service manager for Linux, compatible with the SysV and LSB init scripts. It provides aggressive parallelism capabilities, uses socket and D-Bus activation for starting services, offers on-demand starting of daemons, and keeps track of processes using Linux cgroups. In addition, it supports snapshotting and restoring of the system state, maintains mount and automount points, and implements an elaborate transactional dependency-based service control logic. It can also work as a drop-in replacement for sysvinit.  

Security Fix(es):  

  * systemd: systemd: Arbitrary code execution or Denial of Service via spurious IPC API call data (CVE-2026-29111)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-05"/>
          <updated date="2026-05-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2450505" id="2450505"></bugzilla>
          <cve public="20260323" href="https://access.redhat.com/security/cve/CVE-2026-29111" impact="Moderate" cwe="CWE-1287" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-29111</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651001" comment="systemd is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651002" comment="systemd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651003" comment="systemd-boot-unsigned is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651004" comment="systemd-boot-unsigned is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651005" comment="systemd-container is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651006" comment="systemd-container is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651007" comment="systemd-devel is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651008" comment="systemd-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651009" comment="systemd-journal-remote is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651010" comment="systemd-journal-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651011" comment="systemd-libs is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651012" comment="systemd-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651013" comment="systemd-oomd is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651014" comment="systemd-oomd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651015" comment="systemd-pam is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651016" comment="systemd-pam is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651017" comment="systemd-resolved is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651018" comment="systemd-resolved is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651019" comment="systemd-udev is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651020" comment="systemd-udev is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651021" comment="systemd-rpm-macros is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651022" comment="systemd-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651023" comment="systemd-ukify is earlier than 0:257-13.el10_1.3.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613651024" comment="systemd-ukify is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613642" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13642: image-builder security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:13642" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13642"/>
        <reference ref_id="ALSA-2026:13642" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13642.html"/>
        <description>A local binary for building customized OS artifacts such as VM images and OSTree commits. Uses osbuild under the hood.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-05"/>
          <updated date="2026-05-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202613642001" comment="image-builder is earlier than 0:31-5.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261838002" comment="image-builder is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613566" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13566: kernel security update (Important)</title>
        <reference ref_id="CVE-2026-23270" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23270"/>
        <reference ref_id="CVE-2026-31402" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31402"/>
        <reference ref_id="CVE-2026-31419" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31419"/>
        <reference ref_id="CVE-2026-31431" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31431"/>
        <reference ref_id="RHSA-2026:13566" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13566"/>
        <reference ref_id="ALSA-2026:13566" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13566.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Use-after-free in traffic control (act_ct) may lead to denial of service or privilege escalation (CVE-2026-23270)
  * kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (CVE-2026-31402)
  * kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service (CVE-2026-31419)
  * kernel: crypto: algif_aead - Revert to operating out-of-place (CVE-2026-31431)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-04"/>
          <updated date="2026-05-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2448745" id="2448745"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2454844" id="2454844"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457829" id="2457829"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460538" id="2460538"></bugzilla>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-23270" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23270</cve>
          <cve public="20260403" href="https://access.redhat.com/security/cve/CVE-2026-31402" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31402</cve>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-31419" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31419</cve>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-31431" impact="Important" cwe="CWE-1288" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31431</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566001" comment="kernel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566002" comment="kernel-64k-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566003" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566004" comment="kernel-rt-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566005" comment="kernel-rt-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566006" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566007" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566008" comment="kernel-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566009" comment="kernel-debug is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566010" comment="kernel-debug-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566011" comment="kernel-debug-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566012" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566013" comment="kernel-debug-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566014" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566015" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566016" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566017" comment="kernel-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566018" comment="kernel-devel-matched is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566019" comment="kernel-headers is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566020" comment="kernel-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566021" comment="kernel-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566022" comment="kernel-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566023" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566024" comment="kernel-rt is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566025" comment="kernel-rt-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566026" comment="kernel-rt-debug is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566027" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566028" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566029" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566030" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566031" comment="kernel-tools is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566032" comment="kernel-tools-libs is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566033" comment="kernel-uki-virt is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566035" comment="perf is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566036" comment="python3-perf is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566037" comment="rtla is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566038" comment="rv is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566039" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566040" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566041" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566042" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566043" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566044" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566045" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566046" comment="kernel-64k is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566047" comment="kernel-64k-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566048" comment="kernel-64k-debug is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566049" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566050" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566051" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566052" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566053" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566054" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566056" comment="kernel-64k-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566059" comment="kernel-rt-64k is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566071" comment="kernel-cross-headers is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566073" comment="libperf is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613566075" comment="kernel-doc is earlier than 0:6.12.0-124.55.1.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267666" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7666: nghttp2 security update (Important)</title>
        <reference ref_id="CVE-2026-27135" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27135"/>
        <reference ref_id="RHSA-2026:7666" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7666"/>
        <reference ref_id="ALSA-2026:7666" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7666.html"/>
        <description>libnghttp2 is a library implementing the Hypertext Transfer Protocol version 2 (HTTP/2) protocol in C.  

Security Fix(es):  

  * nghttp2: nghttp2: Denial of Service via malformed HTTP/2 frames after session termination (CVE-2026-27135)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-13"/>
          <updated date="2026-04-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2448754" id="2448754"></bugzilla>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-27135" impact="Important" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27135</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267666001" comment="nghttp2 is earlier than 0:1.64.0-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267666002" comment="nghttp2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267666003" comment="libnghttp2 is earlier than 0:1.64.0-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267666004" comment="libnghttp2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267666005" comment="libnghttp2-devel is earlier than 0:1.64.0-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267666006" comment="libnghttp2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613916" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13916: fence-agents security update (Important)</title>
        <reference ref_id="CVE-2026-30922" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-30922"/>
        <reference ref_id="CVE-2026-32597" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32597"/>
        <reference ref_id="RHSA-2026:13916" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13916"/>
        <reference ref_id="ALSA-2026:13916" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13916.html"/>
        <description>The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.   

Security Fix(es):  

  * pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597)
  * pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-06"/>
          <updated date="2026-05-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2447194" id="2447194"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2448553" id="2448553"></bugzilla>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-30922" impact="Important" cwe="CWE-835" cvss3="CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-30922</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-32597" impact="Important" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-32597</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916001" comment="fence-agents-aliyun is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905002" comment="fence-agents-aliyun is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916002" comment="fence-agents-all is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905004" comment="fence-agents-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916003" comment="fence-agents-aws is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905006" comment="fence-agents-aws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916004" comment="fence-agents-azure-arm is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905008" comment="fence-agents-azure-arm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916005" comment="fence-agents-common is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905010" comment="fence-agents-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916006" comment="fence-agents-gce is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905012" comment="fence-agents-gce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916007" comment="fence-agents-kdump is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905014" comment="fence-agents-kdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916008" comment="fence-agents-kubevirt is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905016" comment="fence-agents-kubevirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916009" comment="fence-agents-openstack is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905018" comment="fence-agents-openstack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916010" comment="fence-agents-redfish is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905020" comment="fence-agents-redfish is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916011" comment="fence-virt is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905022" comment="fence-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916012" comment="fence-virtd is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905024" comment="fence-virtd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916013" comment="fence-virtd-cpg is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905026" comment="fence-virtd-cpg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916014" comment="fence-virtd-libvirt is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905028" comment="fence-virtd-libvirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916015" comment="fence-virtd-multicast is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905030" comment="fence-virtd-multicast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916016" comment="fence-virtd-serial is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905032" comment="fence-virtd-serial is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916017" comment="fence-virtd-tcp is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905034" comment="fence-virtd-tcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916018" comment="ha-cloud-support is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905036" comment="ha-cloud-support is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916019" comment="fence-agents-zvm is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905038" comment="fence-agents-zvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916020" comment="fence-agents-amt-ws is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905040" comment="fence-agents-amt-ws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916021" comment="fence-agents-apc is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905042" comment="fence-agents-apc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916022" comment="fence-agents-apc-snmp is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905044" comment="fence-agents-apc-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916023" comment="fence-agents-bladecenter is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905046" comment="fence-agents-bladecenter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916024" comment="fence-agents-brocade is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905048" comment="fence-agents-brocade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916025" comment="fence-agents-cisco-mds is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905050" comment="fence-agents-cisco-mds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916026" comment="fence-agents-cisco-ucs is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905052" comment="fence-agents-cisco-ucs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916027" comment="fence-agents-drac5 is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905054" comment="fence-agents-drac5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916028" comment="fence-agents-eaton-snmp is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905056" comment="fence-agents-eaton-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916029" comment="fence-agents-emerson is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905058" comment="fence-agents-emerson is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916030" comment="fence-agents-eps is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905060" comment="fence-agents-eps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916031" comment="fence-agents-heuristics-ping is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905062" comment="fence-agents-heuristics-ping is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916032" comment="fence-agents-hpblade is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905064" comment="fence-agents-hpblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916033" comment="fence-agents-ibm-powervs is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905066" comment="fence-agents-ibm-powervs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916034" comment="fence-agents-ibm-vpc is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905068" comment="fence-agents-ibm-vpc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916035" comment="fence-agents-ibmblade is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905070" comment="fence-agents-ibmblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916036" comment="fence-agents-ifmib is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905072" comment="fence-agents-ifmib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916037" comment="fence-agents-ilo-moonshot is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905074" comment="fence-agents-ilo-moonshot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916038" comment="fence-agents-ilo-mp is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905076" comment="fence-agents-ilo-mp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916039" comment="fence-agents-ilo-ssh is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905078" comment="fence-agents-ilo-ssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916040" comment="fence-agents-ilo2 is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905080" comment="fence-agents-ilo2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916041" comment="fence-agents-intelmodular is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905082" comment="fence-agents-intelmodular is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916042" comment="fence-agents-ipdu is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905084" comment="fence-agents-ipdu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916043" comment="fence-agents-ipmilan is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905086" comment="fence-agents-ipmilan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916044" comment="fence-agents-mpath is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905088" comment="fence-agents-mpath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916045" comment="fence-agents-nutanix-ahv is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905090" comment="fence-agents-nutanix-ahv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916046" comment="fence-agents-rhevm is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905092" comment="fence-agents-rhevm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916047" comment="fence-agents-rsa is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905094" comment="fence-agents-rsa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916048" comment="fence-agents-rsb is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905096" comment="fence-agents-rsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916049" comment="fence-agents-sbd is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905098" comment="fence-agents-sbd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916050" comment="fence-agents-scsi is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905100" comment="fence-agents-scsi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916051" comment="fence-agents-virsh is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905102" comment="fence-agents-virsh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916052" comment="fence-agents-vmware-rest is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905104" comment="fence-agents-vmware-rest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916053" comment="fence-agents-vmware-soap is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905106" comment="fence-agents-vmware-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916054" comment="fence-agents-wti is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905108" comment="fence-agents-wti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613916055" comment="fence-agents-lpar is earlier than 0:4.16.0-13.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905110" comment="fence-agents-lpar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267672" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7672: firefox security update (Important)</title>
        <reference ref_id="CVE-2026-5731" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5731"/>
        <reference ref_id="CVE-2026-5732" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5732"/>
        <reference ref_id="CVE-2026-5734" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5734"/>
        <reference ref_id="CVE-2026-33416" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33416"/>
        <reference ref_id="CVE-2026-33636" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33636"/>
        <reference ref_id="RHSA-2026:7672" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7672"/>
        <reference ref_id="ALSA-2026:7672" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7672.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * libpng: libpng: Arbitrary code execution due to use-after-free vulnerability (CVE-2026-33416)
  * libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion (CVE-2026-33636)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 (CVE-2026-5734)
  * thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 (CVE-2026-5731)
  * firefox: thunderbird: Incorrect boundary conditions, integer overflow in the Graphics: Text component (CVE-2026-5732)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-13"/>
          <updated date="2026-04-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451805" id="2451805"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451819" id="2451819"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455897" id="2455897"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455901" id="2455901"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2455908" id="2455908"></bugzilla>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-5731" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5731</cve>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-5732" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5732</cve>
          <cve public="20260407" href="https://access.redhat.com/security/cve/CVE-2026-5734" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5734</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33416" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33416</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33636" impact="Moderate" cwe="CWE-124" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-33636</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20267672001" comment="firefox is earlier than 0:140.9.1-1.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:2026000006" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:A006: kernel security update (Important)</title>
        <reference ref_id="CVE-2026-43284" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43284"/>
        <reference ref_id="ALSA-2026:A006" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-A006.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: xfrm: esp: avoid in-place decrypt on shared skb frags (CVE-2026-43284)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-08"/>
          <updated date="2026-05-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/show_bug.cgi?id=2467771" id="show_bug.cgi?id=2467771"></bugzilla>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-43284" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-43284</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006001" comment="kernel-debug-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003005" comment="kernel-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006002" comment="kernel-64k-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006003" comment="kernel-debug-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006004" comment="kernel-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006005" comment="kernel-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006006" comment="kernel-rt-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006007" comment="kernel-rt-64k-debug-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003116" comment="kernel-rt-64k-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006008" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006009" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006010" comment="rv is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006011" comment="kernel-64k-debug-uki-virt is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003084" comment="kernel-64k-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006012" comment="kernel-debug-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006013" comment="libperf-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003049" comment="libperf-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006014" comment="kernel-rt-64k-debug-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003129" comment="kernel-rt-64k-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006015" comment="kernel-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003002" comment="kernel-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006016" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006017" comment="kernel-headers is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006018" comment="kernel-debug-uki-virt-addons is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003045" comment="kernel-debug-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006019" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006020" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006021" comment="kernel-64k-uki-virt-addons is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003086" comment="kernel-64k-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006022" comment="kernel-rt-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003066" comment="kernel-rt-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006023" comment="kernel-rt is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006024" comment="rtla is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006025" comment="kernel-rt-64k-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003106" comment="kernel-rt-64k-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006026" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006027" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006028" comment="libperf is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006029" comment="kernel-rt-64k-debug-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003109" comment="kernel-rt-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006030" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006031" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006032" comment="kernel-uki-virt is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006033" comment="kernel-tools is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006034" comment="kernel-64k-debug-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003081" comment="kernel-64k-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006035" comment="kernel-64k-debug-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003099" comment="kernel-64k-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006036" comment="kernel-rt-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006037" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006038" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006039" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006040" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006041" comment="kernel-rt-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006042" comment="kernel-debug-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006043" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006044" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006045" comment="kernel-64k is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006046" comment="kernel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006047" comment="kernel-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003043" comment="kernel-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006048" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006049" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006050" comment="kernel-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006051" comment="kernel-cross-headers is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006052" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006053" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006054" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006055" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006056" comment="kernel-64k-uki-virt is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003104" comment="kernel-64k-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006057" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006058" comment="kernel-rt-64k is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006059" comment="python3-perf is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006060" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006061" comment="kernel-64k-debug is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006062" comment="kernel-64k-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003121" comment="kernel-64k-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006063" comment="kernel-tools-libs is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006064" comment="kernel-debug is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006065" comment="kernel-rt-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003009" comment="kernel-rt-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006066" comment="kernel-rt-debug-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003024" comment="kernel-rt-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006067" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006068" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006069" comment="kernel-64k-debug-uki-virt-addons is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003123" comment="kernel-64k-debug-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006070" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006071" comment="kernel-rt-64k-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003101" comment="kernel-rt-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006072" comment="kernel-64k-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006073" comment="kernel-debug-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003063" comment="kernel-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006074" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006075" comment="kernel-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006076" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006077" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006078" comment="kernel-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006079" comment="kernel-rt-debug-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003007" comment="kernel-rt-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006080" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006081" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006082" comment="kernel-rt-debug is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006083" comment="kernel-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006084" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006085" comment="kernel-rt-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003052" comment="kernel-rt-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006086" comment="kernel-64k-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006087" comment="perf is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006088" comment="kernel-rt-debug-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003031" comment="kernel-rt-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006089" comment="kernel-rt-64k-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003091" comment="kernel-rt-64k-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006090" comment="kernel-64k-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003079" comment="kernel-64k-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006091" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006092" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006093" comment="kernel-selftests-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003058" comment="kernel-selftests-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006094" comment="kernel-zfcpdump-modules-partner is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003076" comment="kernel-zfcpdump-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006095" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006096" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006097" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006098" comment="kernel-zfcpdump-modules-internal is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003069" comment="kernel-zfcpdump-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006099" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006100" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006101" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006102" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006103" comment="kernel-doc is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000006104" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.55.3.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202623388" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:23388: php security update (Important)</title>
        <reference ref_id="CVE-2026-6735" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6735"/>
        <reference ref_id="CVE-2026-7258" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7258"/>
        <reference ref_id="CVE-2026-7259" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7259"/>
        <reference ref_id="CVE-2026-7262" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7262"/>
        <reference ref_id="CVE-2026-7568" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7568"/>
        <reference ref_id="RHSA-2026:23388" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:23388"/>
        <reference ref_id="ALSA-2026:23388" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-23388.html"/>
        <description>PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.  

Security Fix(es):  

  * PHP: PHP: Denial of Service via improper handling of signed characters in ctype functions (CVE-2026-7258)
  * PHP: PHP-FPM: PHP-FPM: Cross-Site Scripting vulnerability via improper URL sanitation (CVE-2026-6735)
  * php: NULL pointer dereference in php_mb_check_encoding() via mb_ereg_search_init() (CVE-2026-7259)
  * php: NULL pointer dereference in SOAP apache:Map decoder with missing &lt;value&gt; (CVE-2026-7262)
  * php: signed integer overflow in metaphone() (CVE-2026-7568)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-04"/>
          <updated date="2026-06-04"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2468561" id="2468561"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468562" id="2468562"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468564" id="2468564"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468565" id="2468565"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468566" id="2468566"></bugzilla>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-6735" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N">CVE-2026-6735</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7258" impact="Moderate" cwe="CWE-839" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7258</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7259" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-7259</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7262" impact="Important" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7262</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7568" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7568</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388001" comment="php is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489002" comment="php is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388002" comment="php-bcmath is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489004" comment="php-bcmath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388003" comment="php-cli is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489006" comment="php-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388004" comment="php-common is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489008" comment="php-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388005" comment="php-dba is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489010" comment="php-dba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388006" comment="php-dbg is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489012" comment="php-dbg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388007" comment="php-devel is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489014" comment="php-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388008" comment="php-embedded is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489016" comment="php-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388009" comment="php-enchant is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489018" comment="php-enchant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388010" comment="php-ffi is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489020" comment="php-ffi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388011" comment="php-fpm is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489022" comment="php-fpm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388012" comment="php-gd is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489024" comment="php-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388013" comment="php-gmp is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489026" comment="php-gmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388014" comment="php-intl is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489028" comment="php-intl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388015" comment="php-ldap is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489030" comment="php-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388016" comment="php-mbstring is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489032" comment="php-mbstring is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388017" comment="php-mysqlnd is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489034" comment="php-mysqlnd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388018" comment="php-odbc is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489036" comment="php-odbc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388019" comment="php-opcache is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489038" comment="php-opcache is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388020" comment="php-pdo is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489040" comment="php-pdo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388021" comment="php-pgsql is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489042" comment="php-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388022" comment="php-process is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489044" comment="php-process is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388023" comment="php-snmp is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489046" comment="php-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388024" comment="php-soap is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489048" comment="php-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202623388025" comment="php-xml is earlier than 0:8.3.31-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257489050" comment="php-xml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267682" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7682: openexr security update (Important)</title>
        <reference ref_id="CVE-2026-27622" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27622"/>
        <reference ref_id="RHSA-2026:7682" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7682"/>
        <reference ref_id="ALSA-2026:7682" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7682.html"/>
        <description>OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR.  

Security Fix(es):  

  * openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing (CVE-2026-27622)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-13"/>
          <updated date="2026-04-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2444251" id="2444251"></bugzilla>
          <cve public="20260303" href="https://access.redhat.com/security/cve/CVE-2026-27622" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-27622</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682001" comment="openexr-libs is earlier than 0:3.1.10-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682002" comment="openexr-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682003" comment="openexr is earlier than 0:3.1.10-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682004" comment="openexr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682005" comment="openexr-devel is earlier than 0:3.1.10-8.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682006" comment="openexr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202617075" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:17075: yggdrasil security update (Important)</title>
        <reference ref_id="CVE-2026-32282" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32282"/>
        <reference ref_id="CVE-2026-32283" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32283"/>
        <reference ref_id="RHSA-2026:17075" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:17075"/>
        <reference ref_id="ALSA-2026:17075" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-17075.html"/>
        <description>yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.  

Security Fix(es):  

  * golang: internal/syscall/unix: Root.Chmod can follow symlinks out of the root (CVE-2026-32282)
  * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-13"/>
          <updated date="2026-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2456336" id="2456336"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456338" id="2456338"></bugzilla>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32282" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-32282</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32283" impact="Important" cwe="CWE-764" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202617075001" comment="yggdrasil is earlier than 0:0.4.8-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592002" comment="yggdrasil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202617075002" comment="yggdrasil-devel is earlier than 0:0.4.8-5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592004" comment="yggdrasil-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202615969" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:15969: glib2 security update (Moderate)</title>
        <reference ref_id="CVE-2025-14087" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14087"/>
        <reference ref_id="CVE-2025-14512" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-14512"/>
        <reference ref_id="RHSA-2026:15969" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:15969"/>
        <reference ref_id="ALSA-2026:15969" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-15969.html"/>
        <description>GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.  

Security Fix(es):  

  * glib: GLib: Buffer underflow in GVariant parser leads to heap corruption (CVE-2025-14087)
  * glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow (CVE-2025-14512)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-11"/>
          <updated date="2026-05-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2419093" id="2419093"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2421339" id="2421339"></bugzilla>
          <cve public="20251205" href="https://access.redhat.com/security/cve/CVE-2025-14087" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2025-14087</cve>
          <cve public="20251211" href="https://access.redhat.com/security/cve/CVE-2025-14512" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-14512</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202615969001" comment="glib2 is earlier than 0:2.80.4-10.el10_1.13"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975002" comment="glib2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202615969002" comment="glib2-devel is earlier than 0:2.80.4-10.el10_1.13"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975004" comment="glib2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202615969003" comment="glib2-tests is earlier than 0:2.80.4-10.el10_1.13"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975006" comment="glib2-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202615969004" comment="glib2-doc is earlier than 0:2.80.4-10.el10_1.13"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975008" comment="glib2-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202615969005" comment="glib2-static is earlier than 0:2.80.4-10.el10_1.13"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975010" comment="glib2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202624338" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:24338: bind security update (Important)</title>
        <reference ref_id="CVE-2026-3039" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3039"/>
        <reference ref_id="CVE-2026-5946" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5946"/>
        <reference ref_id="RHSA-2026:24338" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:24338"/>
        <reference ref_id="ALSA-2026:24338" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-24338.html"/>
        <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly.  

Security Fix(es):  

  * bind: BIND 9 server memory exhaustion during GSS-API TKEY negotiation (CVE-2026-3039)
  * bind: BIND: Denial of Service via specially crafted DNS messages (CVE-2026-5946)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-08"/>
          <updated date="2026-06-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2479767" id="2479767"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479771" id="2479771"></bugzilla>
          <cve public="20260521" href="https://access.redhat.com/security/cve/CVE-2026-3039" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-3039</cve>
          <cve public="20260521" href="https://access.redhat.com/security/cve/CVE-2026-5946" impact="Important" cwe="CWE-1287" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-5946</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338001" comment="bind is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912002" comment="bind is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338002" comment="bind-chroot is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912004" comment="bind-chroot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338003" comment="bind-dnssec-utils is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912006" comment="bind-dnssec-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338004" comment="bind-libs is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912008" comment="bind-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338005" comment="bind-utils is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912010" comment="bind-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338006" comment="bind-devel is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912012" comment="bind-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338007" comment="bind-license is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912014" comment="bind-license is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624338008" comment="bind-doc is earlier than 32:9.18.33-15.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519912016" comment="bind-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202613644" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:13644: corosync security update (Moderate)</title>
        <reference ref_id="CVE-2026-35091" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35091"/>
        <reference ref_id="CVE-2026-35092" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35092"/>
        <reference ref_id="RHSA-2026:13644" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:13644"/>
        <reference ref_id="ALSA-2026:13644" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-13644.html"/>
        <description>The corosync packages provide the Corosync Cluster Engine and C APIs for AlmaLinux cluster software.  

Security Fix(es):  

  * corosync: Corosync: Denial of Service and information disclosure via crafted UDP packet (CVE-2026-35091)
  * corosync: Corosync: Denial of Service via integer overflow in join message validation (CVE-2026-35092)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-05"/>
          <updated date="2026-05-05"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453813" id="2453813"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453814" id="2453814"></bugzilla>
          <cve public="20260401" href="https://access.redhat.com/security/cve/CVE-2026-35091" impact="Moderate" cwe="CWE-253" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-35091</cve>
          <cve public="20260401" href="https://access.redhat.com/security/cve/CVE-2026-35092" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35092</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644001" comment="corosynclib is earlier than 0:3.1.9-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478002" comment="corosynclib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644002" comment="corosync is earlier than 0:3.1.9-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644003" comment="corosync is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644004" comment="corosynclib-devel is earlier than 0:3.1.9-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644005" comment="corosynclib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644006" comment="corosync-vqsim is earlier than 0:3.1.9-2.el10_1.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478004" comment="corosync-vqsim is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267992" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7992: golang-github-openprinting-ipp-usb security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:7992" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7992"/>
        <reference ref_id="ALSA-2026:7992" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7992.html"/>
        <description>HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables  
driverless support for USB devices capable of using IPP-over-USB protocol.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-14"/>
          <updated date="2026-04-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20267992001" comment="ipp-usb is earlier than 0:0.9.27-5.el10_1.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259156002" comment="ipp-usb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636956" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36956: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-71066" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-71066"/>
        <reference ref_id="CVE-2026-46113" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46113"/>
        <reference ref_id="CVE-2026-46227" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46227"/>
        <reference ref_id="CVE-2026-53359" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53359"/>
        <reference ref_id="RHSA-2026:36956" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36956"/>
        <reference ref_id="ALSA-2026:36956" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36956.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (CVE-2025-71066)
  * kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)
  * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (CVE-2026-46113)
  * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-09"/>
          <updated date="2026-07-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2429036" id="2429036"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482564" id="2482564"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482587" id="2482587"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2497033" id="2497033"></bugzilla>
          <cve public="20260113" href="https://access.redhat.com/security/cve/CVE-2025-71066" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2025-71066</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46113" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2026-46113</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46227" impact="Important" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46227</cve>
          <cve public="20260704" href="https://access.redhat.com/security/cve/CVE-2026-53359" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-53359</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956001" comment="kernel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956002" comment="kernel-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956003" comment="kernel-debug is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956004" comment="kernel-debug-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956011" comment="kernel-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956013" comment="kernel-headers is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956014" comment="kernel-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956015" comment="kernel-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956018" comment="kernel-rt is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956019" comment="kernel-rt-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956030" comment="kernel-tools is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956034" comment="perf is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956035" comment="python3-perf is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956036" comment="rtla is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956037" comment="rv is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956045" comment="kernel-64k is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956046" comment="kernel-64k-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956073" comment="libperf is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636956075" comment="kernel-doc is earlier than 0:6.12.0-211.32.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267711" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7711: vim security update (Important)</title>
        <reference ref_id="CVE-2026-28417" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-28417"/>
        <reference ref_id="CVE-2026-28421" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-28421"/>
        <reference ref_id="CVE-2026-33412" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33412"/>
        <reference ref_id="RHSA-2026:7711" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7711"/>
        <reference ref_id="ALSA-2026:7711" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7711.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin (CVE-2026-28417)
  * vim: Vim: Denial of service and information disclosure via crafted swap file (CVE-2026-28421)
  * vim: Vim: Arbitrary code execution via command injection in glob() function (CVE-2026-33412)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-13"/>
          <updated date="2026-04-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2443455" id="2443455"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2443474" id="2443474"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450907" id="2450907"></bugzilla>
          <cve public="20260227" href="https://access.redhat.com/security/cve/CVE-2026-28417" impact="Moderate" cwe="CWE-78" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N">CVE-2026-28417</cve>
          <cve public="20260227" href="https://access.redhat.com/security/cve/CVE-2026-28421" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L">CVE-2026-28421</cve>
          <cve public="20260324" href="https://access.redhat.com/security/cve/CVE-2026-33412" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33412</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711001" comment="vim-X11 is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711002" comment="vim-common is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711003" comment="vim-enhanced is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711004" comment="vim-minimal is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711005" comment="xxd is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711006" comment="vim-data is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267711007" comment="vim-filesystem is earlier than 2:9.1.083-6.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267675" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7675: nodejs24 security update (Important)</title>
        <reference ref_id="CVE-2026-1525" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1525"/>
        <reference ref_id="CVE-2026-1526" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1526"/>
        <reference ref_id="CVE-2026-1527" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1527"/>
        <reference ref_id="CVE-2026-1528" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-1528"/>
        <reference ref_id="CVE-2026-2229" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2229"/>
        <reference ref_id="CVE-2026-2581" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-2581"/>
        <reference ref_id="CVE-2026-21637" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21637"/>
        <reference ref_id="CVE-2026-21710" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21710"/>
        <reference ref_id="CVE-2026-21711" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21711"/>
        <reference ref_id="CVE-2026-21712" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21712"/>
        <reference ref_id="CVE-2026-21713" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21713"/>
        <reference ref_id="CVE-2026-21714" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21714"/>
        <reference ref_id="CVE-2026-21715" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21715"/>
        <reference ref_id="CVE-2026-21716" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21716"/>
        <reference ref_id="CVE-2026-21717" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-21717"/>
        <reference ref_id="CVE-2026-25547" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25547"/>
        <reference ref_id="CVE-2026-26996" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26996"/>
        <reference ref_id="CVE-2026-27135" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27135"/>
        <reference ref_id="RHSA-2026:7675" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7675"/>
        <reference ref_id="ALSA-2026:7675" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7675.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime for easily building fast, scalable network applications. Node.js uses an event-driven, non-blocking I/O model that makes it lightweight and efficient, perfect for data-intensive real-time applications that run across distributed devices.  

Security Fix(es):  

  * nodejs: Nodejs denial of service (CVE-2026-21637)
  * brace-expansion: brace-expansion: Denial of Service via unbounded brace range expansion (CVE-2026-25547)
  * minimatch: minimatch: Denial of Service via specially crafted glob patterns (CVE-2026-26996)
  * undici: Undici: Denial of Service due to uncontrolled resource consumption (CVE-2026-2581)
  * undici: Undici: HTTP header injection and request smuggling vulnerability (CVE-2026-1527)
  * undici: undici: Denial of Service via unbounded memory consumption during WebSocket permessage-deflate decompression (CVE-2026-1526)
  * undici: Undici: Denial of Service via invalid WebSocket permessage-deflate extension parameter (CVE-2026-2229)
  * undici: Undici: HTTP Request Smuggling and Denial of Service due to duplicate Content-Length headers (CVE-2026-1525)
  * undici: undici: Denial of Service via crafted WebSocket frame with large length (CVE-2026-1528)
  * nghttp2: nghttp2: Denial of Service via malformed HTTP/2 frames after session termination (CVE-2026-27135)
  * Node.js: Node.js: Denial of Service via malformed Internationalized Domain Name processing (CVE-2026-21712)
  * Node.js: Node.js: Denial of Service due to crafted HTTP `__proto__` header (CVE-2026-21710)
  * Node.js: Node.js: Information disclosure due to `fs.realpathSync.native()` bypassing filesystem read restrictions (CVE-2026-21715)
  * nodejs: Node.js: Permission bypass allows unauthorized modification of file permissions and ownership via incomplete security fix. (CVE-2026-21716)
  * Node.js: Node.js: Unauthorized inter-process communication due to missing Unix Domain Socket permission checks (CVE-2026-21711)
  * Node.js: Node.js: Information disclosure via timing oracle in HMAC verification (CVE-2026-21713)
  * Node.js: Node.js: Memory leak and Denial of Service via crafted HTTP/2 WINDOW_UPDATE frames (CVE-2026-21714)
  * nodejs: v8: Node.js: Denial of Service via V8 string hashing mechanism due to predictable hash collisions (CVE-2026-21717)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-13"/>
          <updated date="2026-04-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2431340" id="2431340"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2436942" id="2436942"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2441268" id="2441268"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447140" id="2447140"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447141" id="2447141"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447142" id="2447142"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447143" id="2447143"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447144" id="2447144"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447145" id="2447145"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2448754" id="2448754"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453037" id="2453037"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453151" id="2453151"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453152" id="2453152"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453157" id="2453157"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453158" id="2453158"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453160" id="2453160"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453161" id="2453161"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453162" id="2453162"></bugzilla>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1525" impact="Moderate" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-1525</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1526" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-1526</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1527" impact="Moderate" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L">CVE-2026-1527</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-1528" impact="Important" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-1528</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-2229" impact="Important" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-2229</cve>
          <cve public="20260312" href="https://access.redhat.com/security/cve/CVE-2026-2581" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-2581</cve>
          <cve public="20260120" href="https://access.redhat.com/security/cve/CVE-2026-21637" impact="Moderate" cwe="CWE-248" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21637</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21710" impact="Important" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21710</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21711" impact="Moderate" cwe="CWE-940" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N">CVE-2026-21711</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21712" impact="Moderate" cwe="CWE-168" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-21712</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21713" impact="Moderate" cwe="CWE-208" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-21713</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21714" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-21714</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21715" impact="Low" cwe="CWE-425" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVE-2026-21715</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21716" impact="Low" cwe="CWE-279" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N">CVE-2026-21716</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-21717" impact="Moderate" cwe="CWE-328" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-21717</cve>
          <cve public="20260204" href="https://access.redhat.com/security/cve/CVE-2026-25547" impact="Moderate" cwe="CWE-409" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-25547</cve>
          <cve public="20260220" href="https://access.redhat.com/security/cve/CVE-2026-26996" impact="Moderate" cwe="CWE-1333" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-26996</cve>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-27135" impact="Important" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27135</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267675001" comment="nodejs24-devel is earlier than 1:24.14.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842004" comment="nodejs24-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267675002" comment="nodejs24-full-i18n is earlier than 1:24.14.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842006" comment="nodejs24-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267675003" comment="nodejs24-libs is earlier than 1:24.14.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842008" comment="nodejs24-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267675004" comment="nodejs24 is earlier than 1:24.14.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842002" comment="nodejs24 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267675005" comment="nodejs24-docs is earlier than 1:24.14.1-2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842010" comment="nodejs24-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267675006" comment="nodejs24-npm is earlier than 1:11.11.0-1.24.14.1.2.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842012" comment="nodejs24-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202616014" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:16014: freerdp security update (Moderate)</title>
        <reference ref_id="CVE-2026-25952" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25952"/>
        <reference ref_id="CVE-2026-25997" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25997"/>
        <reference ref_id="CVE-2026-26986" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26986"/>
        <reference ref_id="CVE-2026-29775" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-29775"/>
        <reference ref_id="CVE-2026-31883" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31883"/>
        <reference ref_id="CVE-2026-31884" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31884"/>
        <reference ref_id="CVE-2026-31885" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31885"/>
        <reference ref_id="CVE-2026-33982" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33982"/>
        <reference ref_id="CVE-2026-33985" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33985"/>
        <reference ref_id="CVE-2026-33987" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33987"/>
        <reference ref_id="RHSA-2026:16014" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:16014"/>
        <reference ref_id="ALSA-2026:16014" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-16014.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * freerdp: FreeRDP: Denial of service via heap use-after-free during auto-reconnect (CVE-2026-25997)
  * freerdp: FreeRDP: Denial of service due to use-after-free vulnerability (CVE-2026-25952)
  * freerdp: FreeRDP: Denial of Service via double free vulnerability during disconnect (CVE-2026-26986)
  * freerdp: FreeRDP has a heap-buffer-overflow in bitmap_cache_put via OOB cacheId (CVE-2026-29775)
  * freerdp: FreeRDP has an out-of-bounds read in ADPCM decoders due to missing predictor/step_index bounds checks (CVE-2026-31885)
  * freerdp: FreeRDP has a division-by-zero in ADPCM decoders when `nBlockAlign` is 0 (CVE-2026-31884)
  * freerdp: FreeRDP: Denial of Service via crafted audio data in RDP (CVE-2026-31883)
  * FreeRDP: FreeRDP: Information disclosure via heap memory out of bounds read (CVE-2026-33985)
  * FreeRDP: FreeRDP: Information disclosure and denial of service via heap-buffer-overflow read (CVE-2026-33982)
  * FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution (CVE-2026-33987)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-11"/>
          <updated date="2026-05-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2442764" id="2442764"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442768" id="2442768"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2442782" id="2442782"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447379" id="2447379"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447383" id="2447383"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447385" id="2447385"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2447386" id="2447386"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453217" id="2453217"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453218" id="2453218"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453226" id="2453226"></bugzilla>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-25952" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-25952</cve>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-25997" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-25997</cve>
          <cve public="20260225" href="https://access.redhat.com/security/cve/CVE-2026-26986" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-26986</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-29775" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-29775</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-31883" impact="Moderate" cwe="CWE-191" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-31883</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-31884" impact="Moderate" cwe="CWE-369" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-31884</cve>
          <cve public="20260313" href="https://access.redhat.com/security/cve/CVE-2026-31885" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-31885</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-33982" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H">CVE-2026-33982</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-33985" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2026-33985</cve>
          <cve public="20260330" href="https://access.redhat.com/security/cve/CVE-2026-33987" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33987</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616014001" comment="freerdp is earlier than 2:3.10.3-5.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616014002" comment="freerdp-libs is earlier than 2:3.10.3-5.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616014003" comment="libwinpr is earlier than 2:3.10.3-5.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616014004" comment="freerdp-devel is earlier than 2:3.10.3-5.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616014005" comment="freerdp-server is earlier than 2:3.10.3-5.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616014006" comment="libwinpr-devel is earlier than 2:3.10.3-5.el10_1.8"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202614790" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:14790: libpng security update (Moderate)</title>
        <reference ref_id="CVE-2026-33636" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33636"/>
        <reference ref_id="RHSA-2026:14790" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:14790"/>
        <reference ref_id="ALSA-2026:14790" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-14790.html"/>
        <description>The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files.  

Security Fix(es):  

  * libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion (CVE-2026-33636)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-07"/>
          <updated date="2026-05-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451819" id="2451819"></bugzilla>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33636" impact="Moderate" cwe="CWE-124" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-33636</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202614790001" comment="libpng is earlier than 2:1.6.40-8.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628233001" comment="libpng is earlier than 2:1.6.40-11.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237002" comment="libpng is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202614790002" comment="libpng-devel is earlier than 2:1.6.40-8.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628233002" comment="libpng-devel is earlier than 2:1.6.40-11.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237004" comment="libpng-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202641892" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:41892: libtiff security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2023-52355" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2023-52355"/>
        <reference ref_id="CVE-2026-12912" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12912"/>
        <reference ref_id="RHSA-2026:41892" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:41892"/>
        <reference ref_id="ALSA-2026:41892" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-41892.html"/>
        <description>The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files.  

Security Fix(es):  

  * libtiff: TIFFRasterScanlineSize64 produce too-big size and could cause OOM (CVE-2023-52355)
  * libtiff: libtiff: Heap-based buffer overflow via crafted PixarLog-compressed TIFF image (CVE-2026-12912)


Bug Fix(es) and Enhancement(s):  

  * Reintroduce the `tiffcp -i` option (JIRA:AlmaLinux-185328)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2251326" id="2251326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492871" id="2492871"></bugzilla>
          <cve public="20231103" href="https://access.redhat.com/security/cve/CVE-2023-52355" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2023-52355</cve>
          <cve public="20260416" href="https://access.redhat.com/security/cve/CVE-2026-12912" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12912</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641892001" comment="libtiff is earlier than 0:4.6.0-8.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156002" comment="libtiff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641892002" comment="libtiff-devel is earlier than 0:4.6.0-8.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156004" comment="libtiff-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641892003" comment="libtiff-tools is earlier than 0:4.6.0-8.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202519156006" comment="libtiff-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:2026000010" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:A010: kernel security update (Important)</title>
        <reference ref_id="CVE-2026-46300" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46300"/>
        <reference ref_id="CVE-2026-46333" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46333"/>
        <reference ref_id="ALSA-2026:A010" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-A010.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):
  * kernel: net: skbuff: propagate shared-frag marker through frag-transfer helpers (CVE-2026-46300)
  * kernel: ptrace: require CAP_SYS_PTRACE when task has no mm (CVE-2026-46333)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-16"/>
          <updated date="2026-05-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/show_bug.cgi?id=2477015" id="show_bug.cgi?id=2477015"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/show_bug.cgi?id=2477802" id="show_bug.cgi?id=2477802"></bugzilla>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-46300" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46300</cve>
          <cve public="20260515" href="https://access.redhat.com/security/cve/CVE-2026-46333" impact="Important" cwe="CWE-269" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46333</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010001" comment="kernel-headers is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010002" comment="kernel-debug-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003005" comment="kernel-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010003" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010004" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010005" comment="kernel-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010006" comment="kernel-debug is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010007" comment="kernel-debug-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003063" comment="kernel-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010008" comment="kernel-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010009" comment="kernel-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003043" comment="kernel-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010010" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010011" comment="kernel-selftests-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003058" comment="kernel-selftests-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010012" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010013" comment="python3-perf is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010014" comment="kernel-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003002" comment="kernel-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010015" comment="kernel-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010016" comment="kernel-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010017" comment="kernel-debug-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010018" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010019" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010020" comment="libperf is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010021" comment="kernel-zfcpdump is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010022" comment="kernel-zfcpdump-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003069" comment="kernel-zfcpdump-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010023" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010024" comment="kernel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010025" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010026" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010027" comment="kernel-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010028" comment="kernel-cross-headers is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010029" comment="rv is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010030" comment="kernel-zfcpdump-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003076" comment="kernel-zfcpdump-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010031" comment="kernel-debug-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010032" comment="kernel-debug-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010033" comment="kernel-tools-libs is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010034" comment="rtla is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010035" comment="perf is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010036" comment="kernel-debug-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010037" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010038" comment="kernel-tools is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010039" comment="kernel-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010040" comment="libperf-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003049" comment="libperf-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010041" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010042" comment="kernel-rt-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010043" comment="kernel-uki-virt is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010044" comment="kernel-rt-debug-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003007" comment="kernel-rt-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010045" comment="kernel-64k-uki-virt-addons is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003086" comment="kernel-64k-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010046" comment="kernel-rt-64k-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003101" comment="kernel-rt-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010047" comment="kernel-64k-debug-uki-virt-addons is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003123" comment="kernel-64k-debug-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010048" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010049" comment="kernel-64k-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003121" comment="kernel-64k-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010050" comment="kernel-rt-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010051" comment="kernel-rt-debug-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010052" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010053" comment="kernel-rt is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010054" comment="kernel-64k-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010055" comment="kernel-rt-debug-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003031" comment="kernel-rt-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010056" comment="kernel-64k-debug-uki-virt is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003084" comment="kernel-64k-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010057" comment="kernel-rt-64k is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010058" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010059" comment="kernel-rt-64k-debug-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003109" comment="kernel-rt-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010060" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010061" comment="kernel-64k-debug is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010062" comment="kernel-rt-64k-debug-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003129" comment="kernel-rt-64k-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010063" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010064" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010065" comment="kernel-rt-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003052" comment="kernel-rt-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010066" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010067" comment="kernel-64k-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010068" comment="kernel-debug-uki-virt-addons is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003045" comment="kernel-debug-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010069" comment="kernel-64k-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003079" comment="kernel-64k-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010070" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010071" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010072" comment="kernel-rt-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010073" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010074" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010075" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010076" comment="kernel-rt-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003009" comment="kernel-rt-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010077" comment="kernel-64k is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010078" comment="kernel-64k-uki-virt is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003104" comment="kernel-64k-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010079" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010080" comment="kernel-64k-debug-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003099" comment="kernel-64k-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010081" comment="kernel-rt-64k-debug-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003116" comment="kernel-rt-64k-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010082" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010083" comment="kernel-rt-debug is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010084" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010085" comment="kernel-rt-debug-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003024" comment="kernel-rt-debug-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010086" comment="kernel-rt-64k-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010087" comment="kernel-64k-debug-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003081" comment="kernel-64k-debug-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010088" comment="kernel-rt-64k-modules-partner is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003106" comment="kernel-rt-64k-modules-partner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010089" comment="kernel-rt-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010090" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010091" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010092" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010093" comment="kernel-64k-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010094" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010095" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010096" comment="kernel-64k-debug-core is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010097" comment="kernel-rt-64k-modules-internal is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003091" comment="kernel-rt-64k-modules-internal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010098" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010099" comment="kernel-64k-devel is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010100" comment="kernel-rt-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000003066" comment="kernel-rt-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010101" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010102" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010103" comment="kernel-doc is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:2026000010104" comment="kernel-abi-stablelists is earlier than 0:6.12.0-124.56.5.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202616692" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:16692: jq security update (Important)</title>
        <reference ref_id="CVE-2026-39979" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39979"/>
        <reference ref_id="CVE-2026-40164" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-40164"/>
        <reference ref_id="RHSA-2026:16692" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:16692"/>
        <reference ref_id="ALSA-2026:16692" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-16692.html"/>
        <description>jq is a lightweight and flexible command-line JSON processor. jq is like sed for JSON data. You can use it to slice, filter, map, or transform structured data with the same ease that sed, awk, grep, or similar applications allow you to manipulate text.  

Security Fix(es):  

  * jq: out-of-bounds read in jv_parse_sized() on error formatting for non-NUL-terminated buffers (CVE-2026-39979)
  * jq: jq: Denial of Service via crafted JSON object causing hash collisions (CVE-2026-40164)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-13"/>
          <updated date="2026-05-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2458077" id="2458077"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2458084" id="2458084"></bugzilla>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-39979" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-39979</cve>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-40164" impact="Important" cwe="CWE-341" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-40164</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616692001" comment="jq is earlier than 0:1.7.1-11.el10_1.0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616692002" comment="jq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616692003" comment="jq-devel is earlier than 0:1.7.1-11.el10_1.0.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202616692004" comment="jq-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202618064" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:18064: libpng security update (Moderate)</title>
        <reference ref_id="CVE-2026-33416" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33416"/>
        <reference ref_id="RHSA-2026:18064" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:18064"/>
        <reference ref_id="ALSA-2026:18064" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-18064.html"/>
        <description>The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files.  

Security Fix(es):  

  * libpng: libpng: Arbitrary code execution due to use-after-free vulnerability (CVE-2026-33416)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-18"/>
          <updated date="2026-05-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451805" id="2451805"></bugzilla>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33416" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33416</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618064001" comment="libpng is earlier than 2:1.6.40-8.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628233001" comment="libpng is earlier than 2:1.6.40-11.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237002" comment="libpng is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618064002" comment="libpng-devel is earlier than 2:1.6.40-8.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628233002" comment="libpng-devel is earlier than 2:1.6.40-11.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237004" comment="libpng-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202618063" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:18063: nginx security update (Critical)</title>
        <reference ref_id="CVE-2026-42945" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42945"/>
        <reference ref_id="RHSA-2026:18063" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:18063"/>
        <reference ref_id="ALSA-2026:18063" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-18063.html"/>
        <description>nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.   

Security Fix(es):  

  * nginx: NGINX: Arbitrary Code Execution Vulnerability (CVE-2026-42945)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Critical</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-18"/>
          <updated date="2026-05-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2477116" id="2477116"></bugzilla>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-42945" impact="Critical" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-42945</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063001" comment="nginx is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705002" comment="nginx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063002" comment="nginx-core is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705004" comment="nginx-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063003" comment="nginx-mod-http-image-filter is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705006" comment="nginx-mod-http-image-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063004" comment="nginx-mod-http-perl is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705008" comment="nginx-mod-http-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063005" comment="nginx-mod-http-xslt-filter is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705010" comment="nginx-mod-http-xslt-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063006" comment="nginx-mod-mail is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705012" comment="nginx-mod-mail is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063007" comment="nginx-mod-stream is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705014" comment="nginx-mod-stream is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063008" comment="nginx-mod-devel is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705016" comment="nginx-mod-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063009" comment="nginx-all-modules is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705018" comment="nginx-all-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618063010" comment="nginx-filesystem is earlier than 2:1.26.3-2.el10_1.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705020" comment="nginx-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:20267005" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:7005: git-lfs security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="RHSA-2026:7005" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:7005"/>
        <reference ref_id="ALSA-2026:7005" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-7005.html"/>
        <description>Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server.  

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-04-08"/>
          <updated date="2026-04-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20267005001" comment="git-lfs is earlier than 0:3.6.1-8.el10_1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063002" comment="git-lfs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202618065" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:18065: ruby security update (Important)</title>
        <reference ref_id="CVE-2026-41316" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-41316"/>
        <reference ref_id="RHSA-2026:18065" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:18065"/>
        <reference ref_id="ALSA-2026:18065" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-18065.html"/>
        <description>Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.  

Security Fix(es):  

  * erb: ERB: Arbitrary code execution via deserialization bypass (CVE-2026-41316)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-18"/>
          <updated date="2026-05-18"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2461369" id="2461369"></bugzilla>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-41316" impact="Important" cwe="CWE-502" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-41316</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065001" comment="ruby is earlier than 0:3.3.10-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131002" comment="ruby is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065002" comment="ruby-bundled-gems is earlier than 0:3.3.10-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131004" comment="ruby-bundled-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065003" comment="ruby-devel is earlier than 0:3.3.10-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131006" comment="ruby-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065004" comment="ruby-libs is earlier than 0:3.3.10-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131008" comment="ruby-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065005" comment="rubygem-bigdecimal is earlier than 0:3.1.5-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131010" comment="rubygem-bigdecimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065006" comment="rubygem-io-console is earlier than 0:0.7.1-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131012" comment="rubygem-io-console is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065007" comment="rubygem-json is earlier than 0:2.7.2-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131014" comment="rubygem-json is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065008" comment="rubygem-psych is earlier than 0:5.1.2-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131016" comment="rubygem-psych is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065009" comment="rubygem-racc is earlier than 0:1.7.3-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131018" comment="rubygem-racc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065010" comment="rubygem-rbs is earlier than 0:3.4.0-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131020" comment="rubygem-rbs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065011" comment="ruby-default-gems is earlier than 0:3.3.10-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131022" comment="ruby-default-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065012" comment="rubygem-bundler is earlier than 0:2.5.22-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131024" comment="rubygem-bundler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065013" comment="rubygem-irb is earlier than 0:1.13.1-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131026" comment="rubygem-irb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065014" comment="rubygem-minitest is earlier than 0:5.20.0-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131028" comment="rubygem-minitest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065015" comment="rubygem-power_assert is earlier than 0:2.0.3-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131030" comment="rubygem-power_assert is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065016" comment="rubygem-rake is earlier than 0:13.1.0-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131032" comment="rubygem-rake is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065017" comment="rubygem-rdoc is earlier than 0:6.6.3.1-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131034" comment="rubygem-rdoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065018" comment="rubygem-rexml is earlier than 0:3.4.4-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131036" comment="rubygem-rexml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065019" comment="rubygem-rss is earlier than 0:0.3.1-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131038" comment="rubygem-rss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065020" comment="rubygem-test-unit is earlier than 0:3.6.1-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131040" comment="rubygem-test-unit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065021" comment="rubygem-typeprof is earlier than 0:0.21.9-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131042" comment="rubygem-typeprof is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065022" comment="rubygems is earlier than 0:3.5.22-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131044" comment="rubygems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065023" comment="rubygems-devel is earlier than 0:3.5.22-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131046" comment="rubygems-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618065024" comment="ruby-doc is earlier than 0:3.3.10-12.el10_1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131048" comment="ruby-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202618134" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:18134: kernel security update (Moderate)</title>
        <reference ref_id="CVE-2024-56633" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-56633"/>
        <reference ref_id="CVE-2025-21839" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-21839"/>
        <reference ref_id="CVE-2025-37980" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-37980"/>
        <reference ref_id="CVE-2025-38015" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38015"/>
        <reference ref_id="CVE-2025-38097" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38097"/>
        <reference ref_id="CVE-2025-38166" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38166"/>
        <reference ref_id="CVE-2025-38202" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38202"/>
        <reference ref_id="CVE-2025-38267" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38267"/>
        <reference ref_id="CVE-2025-38275" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38275"/>
        <reference ref_id="CVE-2025-38279" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38279"/>
        <reference ref_id="CVE-2025-38345" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38345"/>
        <reference ref_id="CVE-2025-38346" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38346"/>
        <reference ref_id="CVE-2025-38405" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38405"/>
        <reference ref_id="CVE-2025-38441" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38441"/>
        <reference ref_id="CVE-2025-38470" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-38470"/>
        <reference ref_id="CVE-2025-39866" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-39866"/>
        <reference ref_id="CVE-2025-40034" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40034"/>
        <reference ref_id="CVE-2025-40134" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40134"/>
        <reference ref_id="CVE-2025-40210" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40210"/>
        <reference ref_id="CVE-2025-40257" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40257"/>
        <reference ref_id="CVE-2025-40320" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40320"/>
        <reference ref_id="CVE-2026-23040" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23040"/>
        <reference ref_id="CVE-2026-23111" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23111"/>
        <reference ref_id="CVE-2026-23210" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23210"/>
        <reference ref_id="CVE-2026-23243" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23243"/>
        <reference ref_id="RHSA-2026:18134" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:18134"/>
        <reference ref_id="ALSA-2026:18134" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-18134.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: tcp_bpf: Fix the sk_mem_uncharge logic in tcp_bpf_sendmsg (CVE-2024-56633)
  * kernel: KVM: x86: Load DR6 with guest value only before entering .vcpu_run() loop (CVE-2025-21839)
  * kernel: block: fix resource leak in blk_register_queue() error path (CVE-2025-37980)
  * kernel: dmaengine: idxd: fix memory leak in error handling path of idxd_alloc (CVE-2025-38015)
  * kernel: espintcp: remove encap socket caching to avoid reference leak (CVE-2025-38097)
  * kernel: bpf: fix ktls panic with sockmap (CVE-2025-38166)
  * kernel: bpf: Check rcu_read_lock_trace_held() in bpf_map_lookup_percpu_elem() (CVE-2025-38202)
  * kernel: bpf: Do not include stack ptr register in precision backtracking bookkeeping (CVE-2025-38279)
  * kernel: ring-buffer: Do not trigger WARN_ON() due to a commit_overrun (CVE-2025-38267)
  * kernel: phy: qcom-qmp-usb: Fix an NULL vs IS_ERR() bug (CVE-2025-38275)
  * kernel: ftrace: Fix UAF when lookup kallsym after ftrace disabled (CVE-2025-38346)
  * kernel: ACPICA: fix acpi operand cache leak in dswstate.c (CVE-2025-38345)
  * kernel: nvmet: fix memory leak of bio integrity (CVE-2025-38405)
  * kernel: netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto() (CVE-2025-38441)
  * kernel: net: vlan: fix VLAN 0 refcount imbalance of toggling filtering during runtime (CVE-2025-38470)
  * kernel: fs: writeback: fix use-after-free in __mark_inode_dirty() (CVE-2025-39866)
  * kernel: PCI/AER: Avoid NULL pointer dereference in aer_ratelimit() (CVE-2025-40034)
  * kernel: dm: fix NULL pointer dereference in __dm_suspend() (CVE-2025-40134)
  * kernel: Revert "NFSD: Remove the cap on number of operations per NFSv4 COMPOUND" (CVE-2025-40210)
  * kernel: Linux kernel MPTCP: Privilege escalation or denial of service via use-after-free in timer handling (CVE-2025-40257)
  * kernel: smb: client: fix potential cfid UAF in smb2_query_info_compound (CVE-2025-40320)
  * kernel: wifi: mac80211_hwsim: fix typo in frequency notification (CVE-2026-23040)
  * kernel: Kernel: Privilege escalation or denial of service in nf_tables via inverted element activity check (CVE-2026-23111)
  * kernel: Linux kernel: Denial of Service in ice driver due to race condition during VSI rebuild (CVE-2026-23210)
  * kernel: Linux kernel: Denial of service and memory corruption in RDMA umad (CVE-2026-23243)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.  

Additional Changes:  

For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-19"/>
          <updated date="2026-05-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2414468" id="2414468"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2334549" id="2334549"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2350585" id="2350585"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2367614" id="2367614"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2373343" id="2373343"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376060" id="2376060"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376065" id="2376065"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2376382" id="2376382"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379178" id="2379178"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379187" id="2379187"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379199" id="2379199"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379237" id="2379237"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2379239" id="2379239"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383399" id="2383399"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383478" id="2383478"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2383906" id="2383906"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2396940" id="2396940"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2406782" id="2406782"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2416307" id="2416307"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2418880" id="2418880"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2419945" id="2419945"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2436806" id="2436806"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439687" id="2439687"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439895" id="2439895"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2448594" id="2448594"></bugzilla>
          <cve public="20241227" href="https://access.redhat.com/security/cve/CVE-2024-56633" impact="Moderate" cwe="CWE-99" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2024-56633</cve>
          <cve public="20250307" href="https://access.redhat.com/security/cve/CVE-2025-21839" impact="Moderate" cwe="CWE-665" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-21839</cve>
          <cve public="20250520" href="https://access.redhat.com/security/cve/CVE-2025-37980" impact="Low" cwe="CWE-459" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-37980</cve>
          <cve public="20250618" href="https://access.redhat.com/security/cve/CVE-2025-38015" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38015</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38097" impact="Low" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-38097</cve>
          <cve public="20250703" href="https://access.redhat.com/security/cve/CVE-2025-38166" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38166</cve>
          <cve public="20250704" href="https://access.redhat.com/security/cve/CVE-2025-38202" impact="Low" cwe="CWE-414" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-38202</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-38267" impact="Moderate" cwe="CWE-821" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38267</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-38275" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38275</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-38279" impact="Low" cwe="CWE-824" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-38279</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-38345" impact="Low" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVE-2025-38345</cve>
          <cve public="20250710" href="https://access.redhat.com/security/cve/CVE-2025-38346" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38346</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38405" impact="Low" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-38405</cve>
          <cve public="20250725" href="https://access.redhat.com/security/cve/CVE-2025-38441" impact="Moderate" cwe="CWE-908" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38441</cve>
          <cve public="20250728" href="https://access.redhat.com/security/cve/CVE-2025-38470" impact="Moderate" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-38470</cve>
          <cve public="20250919" href="https://access.redhat.com/security/cve/CVE-2025-39866" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-39866</cve>
          <cve public="20251028" href="https://access.redhat.com/security/cve/CVE-2025-40034" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-40034</cve>
          <cve public="20251112" href="https://access.redhat.com/security/cve/CVE-2025-40134" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-40134</cve>
          <cve public="20251121" href="https://access.redhat.com/security/cve/CVE-2025-40210" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-40210</cve>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40257" impact="Moderate" cwe="CWE-366" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2025-40257</cve>
          <cve public="20251208" href="https://access.redhat.com/security/cve/CVE-2025-40320" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:H/A:H">CVE-2025-40320</cve>
          <cve public="20260204" href="https://access.redhat.com/security/cve/CVE-2026-23040" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2026-23040</cve>
          <cve public="20260213" href="https://access.redhat.com/security/cve/CVE-2026-23111" impact="Moderate" cwe="CWE-672" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23111</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23210" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-23210</cve>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-23243" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H">CVE-2026-23243</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134001" comment="kernel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134002" comment="kernel-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134003" comment="kernel-debug is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134004" comment="kernel-debug-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134011" comment="kernel-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134013" comment="kernel-headers is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134014" comment="kernel-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134015" comment="kernel-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134018" comment="kernel-rt is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134019" comment="kernel-rt-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134030" comment="kernel-tools is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134034" comment="perf is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134035" comment="python3-perf is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134036" comment="rtla is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134037" comment="rv is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134045" comment="kernel-64k is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134046" comment="kernel-64k-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134073" comment="libperf is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618134075" comment="kernel-doc is earlier than 0:6.12.0-211.7.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625237" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25237: openssl security update (Important)</title>
        <reference ref_id="CVE-2026-7383" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7383"/>
        <reference ref_id="CVE-2026-9076" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9076"/>
        <reference ref_id="CVE-2026-34180" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34180"/>
        <reference ref_id="CVE-2026-34181" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34181"/>
        <reference ref_id="CVE-2026-34182" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34182"/>
        <reference ref_id="CVE-2026-34183" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34183"/>
        <reference ref_id="CVE-2026-42764" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42764"/>
        <reference ref_id="CVE-2026-42766" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42766"/>
        <reference ref_id="CVE-2026-42767" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42767"/>
        <reference ref_id="CVE-2026-42768" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42768"/>
        <reference ref_id="CVE-2026-42769" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42769"/>
        <reference ref_id="CVE-2026-42770" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42770"/>
        <reference ref_id="CVE-2026-45445" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45445"/>
        <reference ref_id="CVE-2026-45446" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45446"/>
        <reference ref_id="CVE-2026-45447" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45447"/>
        <reference ref_id="RHSA-2026:25237" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25237"/>
        <reference ref_id="ALSA-2026:25237" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25237.html"/>
        <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.  

Security Fix(es):  

  * openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing (CVE-2026-7383)
  * openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption (CVE-2026-9076)
  * openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure. (CVE-2026-34180)
  * openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys (CVE-2026-34181)
  * openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages (CVE-2026-34182)
  * openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler (CVE-2026-34183)
  * openssl: NULL pointer dereference in QUIC server initial packet handling (CVE-2026-42764)
  * openssl: Possible NULL Dereference in Password-Based CMS Decryption (CVE-2026-42766)
  * openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption (CVE-2026-42767)
  * openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() (CVE-2026-42768)
  * openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate (CVE-2026-42769)
  * openssl: FFC-DH Peer Validation Uses Attacker-Supplied q (CVE-2026-42770)
  * openssl: AES-OCB IV Ignored on EVP_Cipher() Path (CVE-2026-45445)
  * openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes (CVE-2026-45446)
  * openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45447)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-11"/>
          <updated date="2026-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2481879" id="2481879"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481880" id="2481880"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481881" id="2481881"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481882" id="2481882"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481884" id="2481884"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481885" id="2481885"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481887" id="2481887"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481890" id="2481890"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481891" id="2481891"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481892" id="2481892"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481893" id="2481893"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481894" id="2481894"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481896" id="2481896"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481897" id="2481897"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481898" id="2481898"></bugzilla>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-7383" impact="Low" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:H">CVE-2026-7383</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-9076" impact="Low" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-9076</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-34180" impact="Low" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:H">CVE-2026-34180</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-34181" impact="Low" cwe="CWE-347" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2026-34181</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-34182" impact="Moderate" cwe="CWE-130" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-34182</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-34183" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34183</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-42764" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42764</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-42766" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42766</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-42767" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42767</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-42768" impact="Low" cwe="CWE-205" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2026-42768</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-42769" impact="Low" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N">CVE-2026-42769</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-42770" impact="Low" cwe="CWE-354" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-42770</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45445" impact="Moderate" cwe="CWE-1204" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-45445</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45446" impact="Low" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-45446</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45447" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-45447</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625237001" comment="openssl is earlier than 1:3.5.5-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248002" comment="openssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625237002" comment="openssl-devel is earlier than 1:3.5.5-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248004" comment="openssl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625237003" comment="openssl-libs is earlier than 1:3.5.5-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248006" comment="openssl-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625237004" comment="openssl-perl is earlier than 1:3.5.5-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521248008" comment="openssl-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202654481" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:54481: python-idna security update (Moderate)</title>
        <reference ref_id="CVE-2026-45409" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45409"/>
        <reference ref_id="RHSA-2026:54481" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:54481"/>
        <reference ref_id="ALSA-2026:54481" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-54481.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python-idna: idna: Denial of Service via specially crafted long inputs (CVE-2026-45409)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-08-13"/>
          <updated date="2026-08-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2485616" id="2485616"></bugzilla>
          <cve public="20260605" href="https://access.redhat.com/security/cve/CVE-2026-45409" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-45409</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202654481001" comment="python3-idna is earlier than 0:3.7-6.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202654481002" comment="python3-idna is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202624470" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:24470: podman security update (Important)</title>
        <reference ref_id="CVE-2026-32280" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32280"/>
        <reference ref_id="CVE-2026-32281" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32281"/>
        <reference ref_id="CVE-2026-32283" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32283"/>
        <reference ref_id="RHSA-2026:24470" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:24470"/>
        <reference ref_id="ALSA-2026:24470" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-24470.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation (CVE-2026-32281)
  * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283)
  * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-08"/>
          <updated date="2026-06-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2456333" id="2456333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456338" id="2456338"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456339" id="2456339"></bugzilla>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32280" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32280</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32281" impact="Moderate" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32281</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32283" impact="Important" cwe="CWE-764" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624470001" comment="podman is earlier than 7:5.8.2-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624470002" comment="podman-remote is earlier than 7:5.8.2-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624470003" comment="podman-tests is earlier than 7:5.8.2-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624470004" comment="podman-docker is earlier than 7:5.8.2-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625112" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25112: .NET 9.0 security update (Important)</title>
        <reference ref_id="CVE-2026-45491" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45491"/>
        <reference ref_id="CVE-2026-45591" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45591"/>
        <reference ref_id="RHSA-2026:25112" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25112"/>
        <reference ref_id="ALSA-2026:25112" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25112.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.118 and .NET Runtime 9.0.17.Security Fix(es):  

  * dotnet: .NET: Local file tampering via link following vulnerability (CVE-2026-45491)
  * dotnet: ASP.NET Core: Denial of Service via uncontrolled resource consumption (CVE-2026-45591)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-10"/>
          <updated date="2026-06-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487164" id="2487164"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2487224" id="2487224"></bugzilla>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45491" impact="Moderate" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-45491</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45591" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-45591</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112005" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112006" comment="dotnet-runtime-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112007" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112008" comment="dotnet-sdk-9.0 is earlier than 0:9.0.118-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112009" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.118-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112010" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.118-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112011" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.17-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112012" comment="dotnet-templates-9.0 is earlier than 0:9.0.118-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112013" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.118-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625112014" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.118-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625225" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25225: mod_http2 security update (Important)</title>
        <reference ref_id="CVE-2026-49975" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-49975"/>
        <reference ref_id="RHSA-2026:25225" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25225"/>
        <reference ref_id="ALSA-2026:25225" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25225.html"/>
        <description>The mod_h2 Apache httpd module implements the HTTP2 protocol (h2+h2c) on top of libnghttp2 for httpd 2.4 servers.  

Security Fix(es):  

  * httpd: HTTP/2: Remote Denial of Service via compression bomb and Slowloris-style attack (CVE-2026-49975)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-11"/>
          <updated date="2026-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2485371" id="2485371"></bugzilla>
          <cve public="20260603" href="https://access.redhat.com/security/cve/CVE-2026-49975" impact="Important" cwe="CWE-409" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-49975</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202625225001" comment="mod_http2 is earlier than 0:2.0.29-4.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514625002" comment="mod_http2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202637436" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:37436: golang security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-39821" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39821"/>
        <reference ref_id="CVE-2026-39822" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39822"/>
        <reference ref_id="RHSA-2026:37436" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:37436"/>
        <reference ref_id="ALSA-2026:37436" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-37436.html"/>
        <reference ref_id="CVE-2026-42505" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-42505.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)
  * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)


Bug Fix(es) and Enhancement(s):  

  * Update Go to version 1.26.5+1 [almalinux-10.2.z] (JIRA:AlmaLinux-193473)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-09"/>
          <updated date="2026-07-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480756" id="2480756"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39821" impact="Important" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2026-39821</cve>
          <cve public="20260708" href="https://access.redhat.com/security/cve/CVE-2026-39822" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-39822</cve>
          <cve public="20260708" href="https://www.redhat.com/security/data/cve/CVE-2026-42505.html" impact="Moderate" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-42505</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436001" comment="go-toolset is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436002" comment="golang is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436003" comment="golang-bin is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436004" comment="golang-race is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436005" comment="golang-docs is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436006" comment="golang-misc is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436007" comment="golang-src is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202637436008" comment="golang-tests is earlier than 0:1.26.5-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202624985" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:24985: poppler security update (Important)</title>
        <reference ref_id="CVE-2026-10118" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-10118"/>
        <reference ref_id="RHSA-2026:24985" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:24985"/>
        <reference ref_id="ALSA-2026:24985" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-24985.html"/>
        <description>Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.  

Security Fix(es):  

  * poppler: Integer overflow in Poppler SplashOutputDev::tilingPatternFill leads to heap buffer overflow via unchecked dimension multiplication (CVE-2026-10118)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-10"/>
          <updated date="2026-06-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460428" id="2460428"></bugzilla>
          <cve public="20260601" href="https://access.redhat.com/security/cve/CVE-2026-10118" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-10118</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985001" comment="poppler is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128002" comment="poppler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985002" comment="poppler-cpp is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128004" comment="poppler-cpp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985003" comment="poppler-glib is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128006" comment="poppler-glib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985004" comment="poppler-qt6 is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128008" comment="poppler-qt6 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985005" comment="poppler-utils is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128010" comment="poppler-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985006" comment="poppler-cpp-devel is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128012" comment="poppler-cpp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985007" comment="poppler-devel is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128014" comment="poppler-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985008" comment="poppler-glib-devel is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128016" comment="poppler-glib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985009" comment="poppler-qt6-devel is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128018" comment="poppler-qt6-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624985010" comment="poppler-glib-doc is earlier than 0:24.02.0-7.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260128020" comment="poppler-glib-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636790" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36790: tomcat9 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-29146" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-29146"/>
        <reference ref_id="CVE-2026-34486" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34486"/>
        <reference ref_id="RHSA-2026:36790" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36790"/>
        <reference ref_id="ALSA-2026:36790" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36790.html"/>
        <reference ref_id="CVE-2025-66614" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2025-66614.html"/>
        <reference ref_id="CVE-2026-24733" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-24733.html"/>
        <reference ref_id="CVE-2026-24734" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-24734.html"/>
        <reference ref_id="CVE-2026-24880" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-24880.html"/>
        <reference ref_id="CVE-2026-25854" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-25854.html"/>
        <reference ref_id="CVE-2026-29129" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-29129.html"/>
        <reference ref_id="CVE-2026-29145" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-29145.html"/>
        <reference ref_id="CVE-2026-32990" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-32990.html"/>
        <reference ref_id="CVE-2026-34483" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-34483.html"/>
        <reference ref_id="CVE-2026-34487" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-34487.html"/>
        <reference ref_id="CVE-2026-34500" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-34500.html"/>
        <description>Tomcat is the servlet container that is used in the official Reference Implementation for the Java Servlet and JavaServer Pages technologies. The Java Servlet and JavaServer Pages specifications are developed by Sun under the Java Community Process. Tomcat is developed in an open and participatory environment and released under the Apache Software License version 2.0. Tomcat is intended to be a collaboration of the best-of-breed developers from around the world.  

Security Fix(es):  

  * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in EncryptInterceptor (CVE-2026-29146)
  * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass (CVE-2026-34486)


Bug Fix(es) and Enhancement(s):  

  * Remove tomcat clustering JAR from RPM builds (JIRA:AlmaLinux-185571)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457020" id="2457020"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457027" id="2457027"></bugzilla>
          <cve public="20260409" href="https://access.redhat.com/security/cve/CVE-2026-29146" impact="Important" cwe="CWE-1240" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-29146</cve>
          <cve public="20260409" href="https://access.redhat.com/security/cve/CVE-2026-34486" impact="Important" cwe="CWE-807" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-34486</cve>
          <cve public="20260217" href="https://www.redhat.com/security/data/cve/CVE-2025-66614.html" impact="Moderate" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N">CVE-2025-66614</cve>
          <cve public="20260217" href="https://www.redhat.com/security/data/cve/CVE-2026-24733.html" impact="Low" cwe="CWE-20" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-24733</cve>
          <cve public="20260217" href="https://www.redhat.com/security/data/cve/CVE-2026-24734.html" impact="Important" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-24734</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-24880.html" impact="Low" cwe="CWE-444" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N">CVE-2026-24880</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-25854.html" impact="Low" cwe="CWE-601" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N">CVE-2026-25854</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-29129.html" impact="Low" cwe="CWE-15" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-29129</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-29145.html" impact="Moderate" cwe="CWE-303" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-29145</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-32990.html" impact="Moderate" cwe="CWE-184" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-32990</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-34483.html" impact="Low" cwe="CWE-838" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N">CVE-2026-34483</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-34487.html" impact="Low" cwe="CWE-538" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N">CVE-2026-34487</cve>
          <cve public="20260409" href="https://www.redhat.com/security/data/cve/CVE-2026-34500.html" impact="Moderate" cwe="CWE-303" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-34500</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790001" comment="tomcat9 is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494002" comment="tomcat9 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790002" comment="tomcat9-admin-webapps is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494004" comment="tomcat9-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790003" comment="tomcat9-docs-webapp is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494006" comment="tomcat9-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790004" comment="tomcat9-el-3.0-api is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494008" comment="tomcat9-el-3.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790005" comment="tomcat9-jsp-2.3-api is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494010" comment="tomcat9-jsp-2.3-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790006" comment="tomcat9-lib is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494012" comment="tomcat9-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790007" comment="tomcat9-servlet-4.0-api is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494014" comment="tomcat9-servlet-4.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636790008" comment="tomcat9-webapps is earlier than 1:9.0.117-2.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494016" comment="tomcat9-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625115" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25115: .NET 10.0 security update (Important)</title>
        <reference ref_id="CVE-2026-45491" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45491"/>
        <reference ref_id="CVE-2026-45591" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45591"/>
        <reference ref_id="RHSA-2026:25115" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25115"/>
        <reference ref_id="ALSA-2026:25115" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25115.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.109 and .NET Runtime 10.0.9.Security Fix(es):  

  * dotnet: .NET: Local file tampering via link following vulnerability (CVE-2026-45491)
  * dotnet: ASP.NET Core: Denial of Service via uncontrolled resource consumption (CVE-2026-45591)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-10"/>
          <updated date="2026-06-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487164" id="2487164"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2487224" id="2487224"></bugzilla>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45491" impact="Moderate" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-45491</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45591" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-45591</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115001" comment="aspnetcore-runtime-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453002" comment="aspnetcore-runtime-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115002" comment="aspnetcore-runtime-dbg-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453004" comment="aspnetcore-runtime-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115003" comment="aspnetcore-targeting-pack-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453006" comment="aspnetcore-targeting-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115004" comment="dotnet-apphost-pack-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453008" comment="dotnet-apphost-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115005" comment="dotnet-host is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601010" comment="dotnet-host is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115006" comment="dotnet-hostfxr-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453011" comment="dotnet-hostfxr-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115007" comment="dotnet-runtime-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453013" comment="dotnet-runtime-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115008" comment="dotnet-runtime-dbg-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453015" comment="dotnet-runtime-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115009" comment="dotnet-sdk-10.0 is earlier than 0:10.0.109-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453017" comment="dotnet-sdk-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115010" comment="dotnet-sdk-aot-10.0 is earlier than 0:10.0.109-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453019" comment="dotnet-sdk-aot-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115011" comment="dotnet-sdk-dbg-10.0 is earlier than 0:10.0.109-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453021" comment="dotnet-sdk-dbg-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115012" comment="dotnet-targeting-pack-10.0 is earlier than 0:10.0.9-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453023" comment="dotnet-targeting-pack-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115013" comment="dotnet-templates-10.0 is earlier than 0:10.0.109-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453025" comment="dotnet-templates-10.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625115014" comment="dotnet-sdk-10.0-source-built-artifacts is earlier than 0:10.0.109-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264453027" comment="dotnet-sdk-10.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625111" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25111: .NET 8.0 security update (Important)</title>
        <reference ref_id="CVE-2026-45491" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45491"/>
        <reference ref_id="CVE-2026-45591" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45591"/>
        <reference ref_id="RHSA-2026:25111" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25111"/>
        <reference ref_id="ALSA-2026:25111" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25111.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.128 and .NET Runtime 8.0.28.Security Fix(es):  

  * dotnet: .NET: Local file tampering via link following vulnerability (CVE-2026-45491)
  * dotnet: ASP.NET Core: Denial of Service via uncontrolled resource consumption (CVE-2026-45591)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-10"/>
          <updated date="2026-06-10"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487164" id="2487164"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2487224" id="2487224"></bugzilla>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45491" impact="Moderate" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-45491</cve>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-45591" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-45591</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111001" comment="aspnetcore-runtime-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599002" comment="aspnetcore-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111002" comment="aspnetcore-runtime-dbg-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599004" comment="aspnetcore-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111003" comment="aspnetcore-targeting-pack-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599006" comment="aspnetcore-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111004" comment="dotnet-apphost-pack-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599008" comment="dotnet-apphost-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111005" comment="dotnet-hostfxr-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599010" comment="dotnet-hostfxr-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111006" comment="dotnet-runtime-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599012" comment="dotnet-runtime-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111007" comment="dotnet-runtime-dbg-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599014" comment="dotnet-runtime-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111008" comment="dotnet-sdk-8.0 is earlier than 0:8.0.128-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599016" comment="dotnet-sdk-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111009" comment="dotnet-sdk-dbg-8.0 is earlier than 0:8.0.128-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599018" comment="dotnet-sdk-dbg-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111010" comment="dotnet-targeting-pack-8.0 is earlier than 0:8.0.28-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599020" comment="dotnet-targeting-pack-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111011" comment="dotnet-templates-8.0 is earlier than 0:8.0.128-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599022" comment="dotnet-templates-8.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625111012" comment="dotnet-sdk-8.0-source-built-artifacts is earlier than 0:8.0.128-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257599024" comment="dotnet-sdk-8.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636788" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36788: tomcat security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-29146" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-29146"/>
        <reference ref_id="CVE-2026-34486" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34486"/>
        <reference ref_id="RHSA-2026:36788" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36788"/>
        <reference ref_id="ALSA-2026:36788" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36788.html"/>
        <description>Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies.  

Security Fix(es):  

  * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in EncryptInterceptor (CVE-2026-29146)
  * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass (CVE-2026-34486)


Bug Fix(es) and Enhancement(s):  

  * Remove tomcat clustering JAR from RPM builds (JIRA:AlmaLinux-168577)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457020" id="2457020"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2457027" id="2457027"></bugzilla>
          <cve public="20260409" href="https://access.redhat.com/security/cve/CVE-2026-29146" impact="Important" cwe="CWE-1240" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-29146</cve>
          <cve public="20260409" href="https://access.redhat.com/security/cve/CVE-2026-34486" impact="Important" cwe="CWE-807" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-34486</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788001" comment="tomcat is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497004" comment="tomcat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788002" comment="tomcat-admin-webapps is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497006" comment="tomcat-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788003" comment="tomcat-docs-webapp is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497008" comment="tomcat-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788004" comment="tomcat-el-5.0-api is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497010" comment="tomcat-el-5.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788005" comment="tomcat-jsp-3.1-api is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497012" comment="tomcat-jsp-3.1-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788006" comment="tomcat-lib is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497002" comment="tomcat-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788007" comment="tomcat-servlet-6.0-api is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497014" comment="tomcat-servlet-6.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636788008" comment="tomcat-webapps is earlier than 1:10.1.49-3.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257497016" comment="tomcat-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625191" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25191: kernel security update (Critical)</title>
        <reference ref_id="CVE-2026-31419" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31419"/>
        <reference ref_id="CVE-2026-31467" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31467"/>
        <reference ref_id="CVE-2026-31532" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31532"/>
        <reference ref_id="CVE-2026-31581" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31581"/>
        <reference ref_id="CVE-2026-43037" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43037"/>
        <reference ref_id="CVE-2026-43501" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43501"/>
        <reference ref_id="CVE-2026-46054" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46054"/>
        <reference ref_id="RHSA-2026:25191" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25191"/>
        <reference ref_id="ALSA-2026:25191" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25191.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service (CVE-2026-31419)
  * kernel: Linux kernel: Denial of Service in erofs filesystem (CVE-2026-31467)
  * kernel: can: raw: fix ro-&gt;uniq use-after-free in raw_rcv() (CVE-2026-31532)
  * kernel: ALSA: 6fire: fix use-after-free on disconnect (CVE-2026-31581)
  * kernel: ip6_tunnel: clear skb2-&gt;cb[] in ip4ip6_err() (CVE-2026-43037)
  * kernel: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (CVE-2026-43501)
  * kernel: selinux: fix overlayfs mmap() and mprotect() access checks (CVE-2026-46054)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Critical</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-11"/>
          <updated date="2026-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2457829" id="2457829"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460616" id="2460616"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2461107" id="2461107"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2461471" id="2461471"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464351" id="2464351"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480457" id="2480457"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482025" id="2482025"></bugzilla>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-31419" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31419</cve>
          <cve public="20260422" href="https://access.redhat.com/security/cve/CVE-2026-31467" impact="Moderate" cwe="CWE-833" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-31467</cve>
          <cve public="20260423" href="https://access.redhat.com/security/cve/CVE-2026-31532" impact="Moderate" cwe="CWE-366" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31532</cve>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-31581" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:H">CVE-2026-31581</cve>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-43037" impact="Critical" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43037</cve>
          <cve public="20260521" href="https://access.redhat.com/security/cve/CVE-2026-43501" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43501</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-46054" impact="Important" cwe="CWE-280" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46054</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191001" comment="kernel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191002" comment="kernel-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191003" comment="kernel-debug is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191004" comment="kernel-debug-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191011" comment="kernel-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191013" comment="kernel-headers is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191014" comment="kernel-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191015" comment="kernel-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191018" comment="kernel-rt is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191019" comment="kernel-rt-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191030" comment="kernel-tools is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191034" comment="perf is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191035" comment="python3-perf is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191036" comment="rtla is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191037" comment="rv is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191045" comment="kernel-64k is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191046" comment="kernel-64k-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191073" comment="libperf is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625191075" comment="kernel-doc is earlier than 0:6.12.0-211.22.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636211" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36211: freeipmi security update (Moderate)</title>
        <reference ref_id="CVE-2026-50031" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50031"/>
        <reference ref_id="RHSA-2026:36211" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36211"/>
        <reference ref_id="ALSA-2026:36211" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36211.html"/>
        <description>The freeipmi packages contain an Intelligent Platform Management Interface (IPMI) remote console and system management software based on the IPMI specification.  

Security Fix(es):  

  * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2484296" id="2484296"></bugzilla>
          <cve public="20260603" href="https://access.redhat.com/security/cve/CVE-2026-50031" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50031</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636211001" comment="freeipmi is earlier than 0:1.6.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515002" comment="freeipmi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636211002" comment="freeipmi-bmc-watchdog is earlier than 0:1.6.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515004" comment="freeipmi-bmc-watchdog is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636211003" comment="freeipmi-ipmidetectd is earlier than 0:1.6.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515006" comment="freeipmi-ipmidetectd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636211004" comment="freeipmi-ipmiseld is earlier than 0:1.6.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515008" comment="freeipmi-ipmiseld is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636211005" comment="freeipmi-devel is earlier than 0:1.6.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613515010" comment="freeipmi-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202626532" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:26532: dracut security update (Important)</title>
        <reference ref_id="CVE-2026-6893" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6893"/>
        <reference ref_id="RHSA-2026:26532" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:26532"/>
        <reference ref_id="ALSA-2026:26532" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-26532.html"/>
        <description>The dracut packages contain an event-driven initial RAM file system (initramfs) generator infrastructure based on the udev device manager. The virtual file system, initramfs, is loaded together with the kernel at boot time and initializes the system, so it can read and boot from the root partition.  

Security Fix(es):  

  * dracut: dracut: Root code execution via DHCP options command injection (CVE-2026-6893)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-17"/>
          <updated date="2026-06-17"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2459963" id="2459963"></bugzilla>
          <cve public="20260610" href="https://access.redhat.com/security/cve/CVE-2026-6893" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-6893</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532001" comment="dracut is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532002" comment="dracut is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532003" comment="dracut-caps is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532004" comment="dracut-caps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532005" comment="dracut-config-generic is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532006" comment="dracut-config-generic is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532007" comment="dracut-config-rescue is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532008" comment="dracut-config-rescue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532009" comment="dracut-live is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532010" comment="dracut-live is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532011" comment="dracut-network is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532012" comment="dracut-network is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532013" comment="dracut-squash is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532014" comment="dracut-squash is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532015" comment="dracut-tools is earlier than 0:107-7.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202626532016" comment="dracut-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202638492" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:38492: kernel security update (Important)</title>
        <reference ref_id="CVE-2026-43163" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43163"/>
        <reference ref_id="CVE-2026-43499" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43499"/>
        <reference ref_id="CVE-2026-53166" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53166"/>
        <reference ref_id="RHSA-2026:38492" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:38492"/>
        <reference ref_id="ALSA-2026:38492" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-38492.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: md/bitmap: fix GPF in write_page caused by resize race (CVE-2026-43163)
  * kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)
  * kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock (CVE-2026-53166)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-13"/>
          <updated date="2026-07-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467059" id="2467059"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480453" id="2480453"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492805" id="2492805"></bugzilla>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43163" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-43163</cve>
          <cve public="20260521" href="https://access.redhat.com/security/cve/CVE-2026-43499" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43499</cve>
          <cve public="20260625" href="https://access.redhat.com/security/cve/CVE-2026-53166" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-53166</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492001" comment="kernel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492002" comment="kernel-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492003" comment="kernel-debug is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492004" comment="kernel-debug-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492011" comment="kernel-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492013" comment="kernel-headers is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492014" comment="kernel-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492015" comment="kernel-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492018" comment="kernel-rt is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492019" comment="kernel-rt-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492030" comment="kernel-tools is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492034" comment="perf is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492035" comment="python3-perf is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492036" comment="rtla is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492037" comment="rv is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492045" comment="kernel-64k is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492046" comment="kernel-64k-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492073" comment="libperf is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638492075" comment="kernel-doc is earlier than 0:6.12.0-211.33.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622141" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22141: go-fdo-client and go-fdo-server security update (Moderate)</title>
        <reference ref_id="CVE-2025-68121" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68121"/>
        <reference ref_id="CVE-2026-32280" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32280"/>
        <reference ref_id="CVE-2026-32281" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32281"/>
        <reference ref_id="CVE-2026-32282" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32282"/>
        <reference ref_id="RHSA-2026:22141" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22141"/>
        <reference ref_id="ALSA-2026:22141" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22141.html"/>
        <description>This package provides a server-side implementation of the FIDO Device Onboard (FDO) specification, written in Go. FDO is an open standard for the late binding of device credentials, allowing for automated and secure on-boarding of devices when they are first powered on in their final location.  

Security Fix(es):  

  * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)
  * crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation (CVE-2026-32281)
  * golang: internal/syscall/unix: Root.Chmod can follow symlinks out of the root (CVE-2026-32282)
  * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-01"/>
          <updated date="2026-06-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2437111" id="2437111"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456333" id="2456333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456336" id="2456336"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456339" id="2456339"></bugzilla>
          <cve public="20260205" href="https://access.redhat.com/security/cve/CVE-2025-68121" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2025-68121</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32280" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32280</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32281" impact="Moderate" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32281</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32282" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-32282</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141001" comment="go-fdo-client is earlier than 0:1.0.0-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141002" comment="go-fdo-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141003" comment="go-fdo-server is earlier than 0:1.0.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141004" comment="go-fdo-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141005" comment="go-fdo-server-manufacturer is earlier than 0:1.0.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141006" comment="go-fdo-server-manufacturer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141007" comment="go-fdo-server-owner is earlier than 0:1.0.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141008" comment="go-fdo-server-owner is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141009" comment="go-fdo-server-rendezvous is earlier than 0:1.0.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622141010" comment="go-fdo-server-rendezvous is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633540" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33540: ruby4.0 security update (Important)</title>
        <reference ref_id="CVE-2026-42245" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42245"/>
        <reference ref_id="CVE-2026-42246" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42246"/>
        <reference ref_id="CVE-2026-42258" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42258"/>
        <reference ref_id="RHSA-2026:33540" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33540"/>
        <reference ref_id="ALSA-2026:33540" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33540.html"/>
        <description>Ruby is the interpreted scripting language for quick and easy object-oriented programming. It has many features to process text files and to do system management tasks (as in Perl). It is simple, straight-forward, and extensible.  

Security Fix(es):  

  * ruby: net-imap: Net::IMAP: Denial of Service via crafted IMAP responses (CVE-2026-42245)
  * ruby/net-imap: ruby: Net::IMAP: IMAP Command Injection via Symbol Arguments (CVE-2026-42258)
  * net-imap: ruby: Net::IMAP: Information disclosure via man-in-the-middle attack bypassing TLS (CVE-2026-42246)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-30"/>
          <updated date="2026-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2468495" id="2468495"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468498" id="2468498"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468499" id="2468499"></bugzilla>
          <cve public="20260509" href="https://access.redhat.com/security/cve/CVE-2026-42245" impact="Moderate" cwe="CWE-606" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-42245</cve>
          <cve public="20260509" href="https://access.redhat.com/security/cve/CVE-2026-42246" impact="Important" cwe="CWE-325" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-42246</cve>
          <cve public="20260509" href="https://access.redhat.com/security/cve/CVE-2026-42258" impact="Important" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:N">CVE-2026-42258</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633540001" comment="ruby4.0 is earlier than 0:4.0.3-35.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606008" comment="ruby4.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633540002" comment="ruby4.0-devel is earlier than 0:4.0.3-35.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606002" comment="ruby4.0-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633540003" comment="ruby4.0-rubygem-mysql2 is earlier than 0:0.5.7-35.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606004" comment="ruby4.0-rubygem-mysql2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633540004" comment="ruby4.0-rubygem-pg is earlier than 0:1.6.3-35.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606006" comment="ruby4.0-rubygem-pg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633540005" comment="ruby4.0-doc is earlier than 0:4.0.3-35.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620606010" comment="ruby4.0-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639272" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39272: git-lfs security update (Important)</title>
        <reference ref_id="CVE-2026-33811" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33811"/>
        <reference ref_id="RHSA-2026:39272" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39272"/>
        <reference ref_id="ALSA-2026:39272" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39272.html"/>
        <description>Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server.  

Security Fix(es):  

  * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467822" id="2467822"></bugzilla>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-33811" impact="Important" cwe="CWE-1341" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33811</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202639272001" comment="git-lfs is earlier than 0:3.7.1-5.el10_2.6"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063002" comment="git-lfs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202647083" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:47083: pipewire security update (Important)</title>
        <reference ref_id="CVE-2026-5674" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5674"/>
        <reference ref_id="RHSA-2026:47083" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:47083"/>
        <reference ref_id="ALSA-2026:47083" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-47083.html"/>
        <description>PipeWire is a multimedia server for Linux and other Unix like operating systems.  

Security Fix(es):  

  * pipewire: PipeWire: Sandbox escape and arbitrary code execution via malicious library loading (CVE-2026-5674)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-28"/>
          <updated date="2026-07-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2455341" id="2455341"></bugzilla>
          <cve public="20260704" href="https://access.redhat.com/security/cve/CVE-2026-5674" impact="Important" cwe="CWE-427" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H">CVE-2026-5674</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083001" comment="pipewire is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083002" comment="pipewire is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083003" comment="pipewire-alsa is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083004" comment="pipewire-alsa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083005" comment="pipewire-devel is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083006" comment="pipewire-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083007" comment="pipewire-gstreamer is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083008" comment="pipewire-gstreamer is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083009" comment="pipewire-jack-audio-connection-kit is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083010" comment="pipewire-jack-audio-connection-kit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083011" comment="pipewire-jack-audio-connection-kit-devel is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083012" comment="pipewire-jack-audio-connection-kit-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083013" comment="pipewire-jack-audio-connection-kit-libs is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083014" comment="pipewire-jack-audio-connection-kit-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083015" comment="pipewire-libs is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083016" comment="pipewire-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083017" comment="pipewire-module-x11 is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083018" comment="pipewire-module-x11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083019" comment="pipewire-plugin-libcamera is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083020" comment="pipewire-plugin-libcamera is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083021" comment="pipewire-pulseaudio is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083022" comment="pipewire-pulseaudio is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083023" comment="pipewire-utils is earlier than 0:1.4.11-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647083024" comment="pipewire-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628000" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28000: python-urllib3 security update (Important)</title>
        <reference ref_id="CVE-2026-44431" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44431"/>
        <reference ref_id="CVE-2026-44432" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44432"/>
        <reference ref_id="RHSA-2026:28000" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28000"/>
        <reference ref_id="ALSA-2026:28000" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28000.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * urllib3: urllib3: Denial of Service due to excessive HTTP response decompression (CVE-2026-44432)
  * urllib3: urllib3: Information disclosure via cross-origin redirects forwarding sensitive headers (CVE-2026-44431)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-22"/>
          <updated date="2026-06-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2477154" id="2477154"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477167" id="2477167"></bugzilla>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-44431" impact="Moderate" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-44431</cve>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-44432" impact="Important" cwe="CWE-409" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-44432</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202628000001" comment="python3-urllib3 is earlier than 0:1.26.19-4.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20261086002" comment="python3-urllib3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202627929" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:27929: python3.14-urllib3 security update (Important)</title>
        <reference ref_id="CVE-2026-44431" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44431"/>
        <reference ref_id="CVE-2026-44432" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44432"/>
        <reference ref_id="RHSA-2026:27929" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:27929"/>
        <reference ref_id="ALSA-2026:27929" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-27929.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * urllib3: urllib3: Denial of Service due to excessive HTTP response decompression (CVE-2026-44432)
  * urllib3: urllib3: Information disclosure via cross-origin redirects forwarding sensitive headers (CVE-2026-44431)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-22"/>
          <updated date="2026-06-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2477154" id="2477154"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477167" id="2477167"></bugzilla>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-44431" impact="Moderate" cwe="CWE-201" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-44431</cve>
          <cve public="20260513" href="https://access.redhat.com/security/cve/CVE-2026-44432" impact="Important" cwe="CWE-409" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-44432</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202627929001" comment="python3.14-urllib3 is earlier than 0:2.6.3-2.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202627929002" comment="python3.14-urllib3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202638513" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:38513: perl-DBI security update (Important)</title>
        <reference ref_id="CVE-2026-9698" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9698"/>
        <reference ref_id="RHSA-2026:38513" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:38513"/>
        <reference ref_id="ALSA-2026:38513" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-38513.html"/>
        <reference ref_id="CVE-2026-10879" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-10879.html"/>
        <description>DBI is a database access Application Programming Interface (API) for the Perl Language. The DBI API Specification defines a set of functions, variables and conventions that provide a consistent database interface independent of the actual database being used.  

Security Fix(es):  

  * DBI: DBI: Buffer overflow in error handling can lead to arbitrary code execution (CVE-2026-9698)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-13"/>
          <updated date="2026-07-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2486734" id="2486734"></bugzilla>
          <cve public="20260609" href="https://access.redhat.com/security/cve/CVE-2026-9698" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H">CVE-2026-9698</cve>
          <cve public="20260605" href="https://www.redhat.com/security/data/cve/CVE-2026-10879.html" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H">CVE-2026-10879</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202638513001" comment="perl-DBI is earlier than 0:1.643-26.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202638513002" comment="perl-DBI is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202627842" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:27842: memcached security update (Important)</title>
        <reference ref_id="CVE-2026-47783" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47783"/>
        <reference ref_id="RHSA-2026:27842" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:27842"/>
        <reference ref_id="ALSA-2026:27842" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-27842.html"/>
        <description>memcached is a high-performance, distributed memory object caching system, generic in nature, but intended for use in speeding up dynamic web applications by alleviating database load.   

Security Fix(es):  

  * memcached: memcached: Username enumeration via timing side channel (CVE-2026-47783)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-22"/>
          <updated date="2026-06-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480089" id="2480089"></bugzilla>
          <cve public="20260520" href="https://access.redhat.com/security/cve/CVE-2026-47783" impact="Important" cwe="CWE-208" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-47783</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627842001" comment="memcached is earlier than 0:1.6.23-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627842002" comment="memcached is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627842003" comment="memcached-selinux is earlier than 0:1.6.23-7.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627842004" comment="memcached-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202638499" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:38499: openexr security update (Important)</title>
        <reference ref_id="CVE-2026-41142" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-41142"/>
        <reference ref_id="CVE-2026-42216" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42216"/>
        <reference ref_id="RHSA-2026:38499" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:38499"/>
        <reference ref_id="ALSA-2026:38499" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-38499.html"/>
        <description>OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR.  

Security Fix(es):  

  * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)
  * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-13"/>
          <updated date="2026-07-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467623" id="2467623"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467633" id="2467633"></bugzilla>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-41142" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-41142</cve>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-42216" impact="Important" cwe="CWE-130" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H">CVE-2026-42216</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638499001" comment="openexr is earlier than 0:3.1.10-8.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682004" comment="openexr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638499002" comment="openexr-libs is earlier than 0:3.1.10-8.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682002" comment="openexr-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638499003" comment="openexr-devel is earlier than 0:3.1.10-8.el10_2.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682006" comment="openexr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622325" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22325: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2026-8388" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8388"/>
        <reference ref_id="CVE-2026-8391" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8391"/>
        <reference ref_id="CVE-2026-8401" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8401"/>
        <reference ref_id="CVE-2026-8946" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8946"/>
        <reference ref_id="CVE-2026-8947" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8947"/>
        <reference ref_id="CVE-2026-8950" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8950"/>
        <reference ref_id="CVE-2026-8953" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8953"/>
        <reference ref_id="CVE-2026-8954" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8954"/>
        <reference ref_id="CVE-2026-8955" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8955"/>
        <reference ref_id="CVE-2026-8956" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8956"/>
        <reference ref_id="CVE-2026-8957" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8957"/>
        <reference ref_id="CVE-2026-8958" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8958"/>
        <reference ref_id="CVE-2026-8959" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8959"/>
        <reference ref_id="CVE-2026-8961" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8961"/>
        <reference ref_id="CVE-2026-8962" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8962"/>
        <reference ref_id="CVE-2026-8968" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8968"/>
        <reference ref_id="CVE-2026-8970" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8970"/>
        <reference ref_id="CVE-2026-8974" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8974"/>
        <reference ref_id="CVE-2026-8975" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8975"/>
        <reference ref_id="RHSA-2026:22325" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22325"/>
        <reference ref_id="ALSA-2026:22325" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22325.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: Incorrect boundary conditions in the JavaScript Engine: JIT component (CVE-2026-8388)
  * firefox: Other issue in the JavaScript Engine component (CVE-2026-8391)
  * firefox: Sandbox escape in the Profile Backup component (CVE-2026-8401)
  * firefox: Integer overflow in the Networking: JAR component (CVE-2026-8956)
  * firefox: Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 (CVE-2026-8975)
  * firefox: Privilege escalation in the DOM: Workers component (CVE-2026-8955)
  * firefox: Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component (CVE-2026-8968)
  * firefox: Incorrect boundary conditions, integer overflow in the Audio/Video component (CVE-2026-8954)
  * firefox: Information disclosure, sandbox escape in the Security: Process Sandboxing component (CVE-2026-8958)
  * firefox: Incorrect boundary conditions in the Audio/Video: Web Codecs component (CVE-2026-8946)
  * firefox: Privilege escalation in the Security component (CVE-2026-8970)
  * firefox: Same-origin policy bypass in the Networking: HTTP component (CVE-2026-8950)
  * firefox: Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 151 (CVE-2026-8974)
  * firefox: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-8953)
  * firefox: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component (CVE-2026-8959)
  * firefox: Spoofing issue in the Form Autofill component (CVE-2026-8961)
  * firefox: Use-after-free in the DOM: Bindings (WebIDL) component (CVE-2026-8947)
  * firefox: Mitigation bypass in the DOM: Security component (CVE-2026-8962)
  * firefox: Privilege escalation in the Enterprise Policies component (CVE-2026-8957)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-01"/>
          <updated date="2026-06-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476469" id="2476469"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2476475" id="2476475"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2476492" id="2476492"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479839" id="2479839"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479840" id="2479840"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479842" id="2479842"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479846" id="2479846"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479847" id="2479847"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479848" id="2479848"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479849" id="2479849"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479852" id="2479852"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479853" id="2479853"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479855" id="2479855"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479860" id="2479860"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479861" id="2479861"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479871" id="2479871"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479873" id="2479873"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479876" id="2479876"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479880" id="2479880"></bugzilla>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-8388" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8388</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-8391" impact="Important" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8391</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-8401" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8401</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8946" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8946</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8947" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8947</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8950" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8950</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8953" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8953</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8954" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8954</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8955" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8955</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8956" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8956</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8957" impact="Moderate" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8957</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8958" impact="Moderate" cwe="CWE-403" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8958</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8959" impact="Moderate" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8959</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8961" impact="Low" cwe="CWE-472" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8961</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8962" impact="Low" cwe="CWE-358" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8962</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8968" impact="Low" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8968</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8970" impact="Low" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-8970</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8974" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-8974</cve>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-8975" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8975</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202622325001" comment="thunderbird is earlier than 0:140.11.0-1.el10_2.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202627733" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:27733: firefox security update (Important)</title>
        <reference ref_id="CVE-2026-12289" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12289"/>
        <reference ref_id="CVE-2026-12290" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12290"/>
        <reference ref_id="CVE-2026-12291" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12291"/>
        <reference ref_id="CVE-2026-12292" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12292"/>
        <reference ref_id="CVE-2026-12294" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12294"/>
        <reference ref_id="CVE-2026-12295" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12295"/>
        <reference ref_id="CVE-2026-12296" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12296"/>
        <reference ref_id="CVE-2026-12297" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12297"/>
        <reference ref_id="CVE-2026-12298" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12298"/>
        <reference ref_id="CVE-2026-12299" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12299"/>
        <reference ref_id="CVE-2026-12302" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12302"/>
        <reference ref_id="CVE-2026-12304" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12304"/>
        <reference ref_id="CVE-2026-12305" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12305"/>
        <reference ref_id="CVE-2026-12306" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12306"/>
        <reference ref_id="CVE-2026-12307" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12307"/>
        <reference ref_id="CVE-2026-12308" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12308"/>
        <reference ref_id="CVE-2026-12309" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12309"/>
        <reference ref_id="CVE-2026-12310" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12310"/>
        <reference ref_id="CVE-2026-12311" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12311"/>
        <reference ref_id="CVE-2026-12312" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12312"/>
        <reference ref_id="CVE-2026-12313" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12313"/>
        <reference ref_id="CVE-2026-12314" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12314"/>
        <reference ref_id="CVE-2026-12315" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12315"/>
        <reference ref_id="CVE-2026-12324" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12324"/>
        <reference ref_id="CVE-2026-12325" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12325"/>
        <reference ref_id="CVE-2026-12327" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12327"/>
        <reference ref_id="CVE-2026-12328" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12328"/>
        <reference ref_id="CVE-2026-12329" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12329"/>
        <reference ref_id="CVE-2026-12330" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12330"/>
        <reference ref_id="RHSA-2026:27733" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:27733"/>
        <reference ref_id="ALSA-2026:27733" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-27733.html"/>
        <description>Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.  

Security Fix(es):  

  * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)
  * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing component (CVE-2026-12313)
  * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing component (CVE-2026-12311)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12327)
  * firefox: thunderbird: JIT miscompilation in the DOM: Core &amp; HTML component (CVE-2026-12299)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)
  * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)
  * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component (CVE-2026-12330)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)
  * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)
  * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)
  * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)
  * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)
  * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component (CVE-2026-12297)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)
  * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component (CVE-2026-12324)
  * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)
  * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)
  * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-22"/>
          <updated date="2026-06-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2489207" id="2489207"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489208" id="2489208"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489209" id="2489209"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489210" id="2489210"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489211" id="2489211"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489212" id="2489212"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489214" id="2489214"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489215" id="2489215"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489217" id="2489217"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489218" id="2489218"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489220" id="2489220"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489221" id="2489221"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489223" id="2489223"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489224" id="2489224"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489225" id="2489225"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489226" id="2489226"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489229" id="2489229"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489231" id="2489231"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489232" id="2489232"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489233" id="2489233"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489234" id="2489234"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489235" id="2489235"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489236" id="2489236"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489237" id="2489237"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489239" id="2489239"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489240" id="2489240"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489243" id="2489243"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489244" id="2489244"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489248" id="2489248"></bugzilla>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12289" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12289</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12290" impact="Important" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12290</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12291" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12291</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12292" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12292</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12294" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12294</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12295" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12295</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12296" impact="Important" cwe="CWE-403" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12296</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12297" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12297</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12298" impact="Important" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12298</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12299" impact="Important" cwe="CWE-733" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12299</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12302" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12302</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12304" impact="Moderate" cwe="CWE-346" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12304</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12305" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12305</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12306" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12306</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12307" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12307</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12308" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12308</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12309" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12309</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12310" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12310</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12311" impact="Moderate" cwe="CWE-243" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12311</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12312" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12312</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12313" impact="Moderate" cwe="CWE-403" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12313</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12314" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12314</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12315" impact="Moderate" cwe="CWE-807" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12315</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12324" impact="Low" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-12324</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12325" impact="Low" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-12325</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12327" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12327</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12328" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12328</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12329" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12329</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12330" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12330</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202627733001" comment="firefox is earlier than 0:140.12.0-1.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258125002" comment="firefox is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625902" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25902: fence-agents security update (Important)</title>
        <reference ref_id="CVE-2026-48526" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48526"/>
        <reference ref_id="RHSA-2026:25902" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25902"/>
        <reference ref_id="ALSA-2026:25902" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25902.html"/>
        <description>The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.   

Security Fix(es):  

  * python-pyjwt: PyJWT: Authentication bypass due to forged JSON Web Tokens (CVE-2026-48526)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-15"/>
          <updated date="2026-06-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2482734" id="2482734"></bugzilla>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-48526" impact="Important" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-48526</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902001" comment="fence-agents-aliyun is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905002" comment="fence-agents-aliyun is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902002" comment="fence-agents-all is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905004" comment="fence-agents-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902003" comment="fence-agents-kdump is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905014" comment="fence-agents-kdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902004" comment="fence-agents-kubevirt is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905016" comment="fence-agents-kubevirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902005" comment="fence-agents-redfish is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905020" comment="fence-agents-redfish is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902006" comment="fence-agents-zvm is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905038" comment="fence-agents-zvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902007" comment="fence-agents-common is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905010" comment="fence-agents-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902008" comment="fence-agents-aws is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905006" comment="fence-agents-aws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902009" comment="fence-agents-azure-arm is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905008" comment="fence-agents-azure-arm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902010" comment="fence-agents-gce is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905012" comment="fence-agents-gce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902011" comment="fence-agents-openstack is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905018" comment="fence-agents-openstack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902012" comment="fence-virt is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905022" comment="fence-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902013" comment="fence-virtd is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905024" comment="fence-virtd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902014" comment="fence-virtd-cpg is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905026" comment="fence-virtd-cpg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902015" comment="fence-virtd-libvirt is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905028" comment="fence-virtd-libvirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902016" comment="fence-virtd-multicast is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905030" comment="fence-virtd-multicast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902017" comment="fence-virtd-serial is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905032" comment="fence-virtd-serial is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902018" comment="fence-virtd-tcp is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905034" comment="fence-virtd-tcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902019" comment="ha-cloud-support is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905036" comment="ha-cloud-support is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902020" comment="fence-agents-amt-ws is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905040" comment="fence-agents-amt-ws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902021" comment="fence-agents-apc is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905042" comment="fence-agents-apc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902022" comment="fence-agents-apc-snmp is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905044" comment="fence-agents-apc-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902023" comment="fence-agents-ipdu is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905084" comment="fence-agents-ipdu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902024" comment="fence-agents-ipmilan is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905086" comment="fence-agents-ipmilan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902025" comment="fence-agents-mpath is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905088" comment="fence-agents-mpath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902026" comment="fence-agents-nutanix-ahv is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905090" comment="fence-agents-nutanix-ahv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902027" comment="fence-agents-rhevm is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905092" comment="fence-agents-rhevm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902028" comment="fence-agents-rsa is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905094" comment="fence-agents-rsa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902029" comment="fence-agents-rsb is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905096" comment="fence-agents-rsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902030" comment="fence-agents-sbd is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905098" comment="fence-agents-sbd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902031" comment="fence-agents-scsi is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905100" comment="fence-agents-scsi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902032" comment="fence-agents-virsh is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905102" comment="fence-agents-virsh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902033" comment="fence-agents-vmware-rest is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905104" comment="fence-agents-vmware-rest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902034" comment="fence-agents-vmware-soap is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905106" comment="fence-agents-vmware-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902035" comment="fence-agents-wti is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905108" comment="fence-agents-wti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902036" comment="fence-agents-bladecenter is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905046" comment="fence-agents-bladecenter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902037" comment="fence-agents-brocade is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905048" comment="fence-agents-brocade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902038" comment="fence-agents-cisco-mds is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905050" comment="fence-agents-cisco-mds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902039" comment="fence-agents-cisco-ucs is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905052" comment="fence-agents-cisco-ucs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902040" comment="fence-agents-drac5 is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905054" comment="fence-agents-drac5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902041" comment="fence-agents-eaton-snmp is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905056" comment="fence-agents-eaton-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902042" comment="fence-agents-emerson is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905058" comment="fence-agents-emerson is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902043" comment="fence-agents-ifmib is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905072" comment="fence-agents-ifmib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902044" comment="fence-agents-ilo-moonshot is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905074" comment="fence-agents-ilo-moonshot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902045" comment="fence-agents-ilo-mp is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905076" comment="fence-agents-ilo-mp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902046" comment="fence-agents-ilo-ssh is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905078" comment="fence-agents-ilo-ssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902047" comment="fence-agents-ilo2 is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905080" comment="fence-agents-ilo2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902048" comment="fence-agents-intelmodular is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905082" comment="fence-agents-intelmodular is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902049" comment="fence-agents-lpar is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905110" comment="fence-agents-lpar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902050" comment="fence-agents-eps is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905060" comment="fence-agents-eps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902051" comment="fence-agents-heuristics-ping is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905062" comment="fence-agents-heuristics-ping is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902052" comment="fence-agents-hpblade is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905064" comment="fence-agents-hpblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902053" comment="fence-agents-ibm-powervs is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905066" comment="fence-agents-ibm-powervs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902054" comment="fence-agents-ibm-vpc is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905068" comment="fence-agents-ibm-vpc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625902055" comment="fence-agents-ibmblade is earlier than 0:4.16.0-21.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905070" comment="fence-agents-ibmblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202627743" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:27743: postgresql16 security update (Important)</title>
        <reference ref_id="CVE-2026-6473" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6473"/>
        <reference ref_id="CVE-2026-6475" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6475"/>
        <reference ref_id="CVE-2026-6477" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6477"/>
        <reference ref_id="CVE-2026-6478" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6478"/>
        <reference ref_id="RHSA-2026:27743" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:27743"/>
        <reference ref_id="ALSA-2026:27743" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-27743.html"/>
        <description>PostgreSQL is an advanced Object-Relational database management system (DBMS). The base postgresql package contains the client programs that you'll need to access a PostgreSQL DBMS server, as well as HTML documentation for the whole system. These client programs can be located on the same machine as the PostgreSQL server, or on a remote machine that accesses a PostgreSQL server over a network connection. The PostgreSQL server can be found in the postgresql-server sub-package.  

Security Fix(es):  

  * postgresql: PostgreSQL: Operating system account hijack via symlink following in pg_basebackup and pg_rewind (CVE-2026-6475)
  * postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477)
  * postgresql: PostgreSQL: Credential recovery via covert timing channel in MD5 password comparison (CVE-2026-6478)
  * postgresql: integer overflow can cause an undersized allocation and an out-of-bounds write (CVE-2026-6473)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-22"/>
          <updated date="2026-06-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2477439" id="2477439"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477442" id="2477442"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477447" id="2477447"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2477448" id="2477448"></bugzilla>
          <cve public="20260514" href="https://access.redhat.com/security/cve/CVE-2026-6473" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-6473</cve>
          <cve public="20260514" href="https://access.redhat.com/security/cve/CVE-2026-6475" impact="Moderate" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2026-6475</cve>
          <cve public="20260514" href="https://access.redhat.com/security/cve/CVE-2026-6477" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H">CVE-2026-6477</cve>
          <cve public="20260514" href="https://access.redhat.com/security/cve/CVE-2026-6478" impact="Important" cwe="CWE-385" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N">CVE-2026-6478</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743001" comment="postgresql is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826002" comment="postgresql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743002" comment="postgresql-contrib is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826004" comment="postgresql-contrib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743003" comment="postgresql-docs is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826006" comment="postgresql-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743004" comment="postgresql-plperl is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826008" comment="postgresql-plperl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743005" comment="postgresql-plpython3 is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826010" comment="postgresql-plpython3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743006" comment="postgresql-pltcl is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826012" comment="postgresql-pltcl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743007" comment="postgresql-private-devel is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826014" comment="postgresql-private-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743008" comment="postgresql-private-libs is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826016" comment="postgresql-private-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743009" comment="postgresql-server is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826018" comment="postgresql-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743010" comment="postgresql-server-devel is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826020" comment="postgresql-server-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743011" comment="postgresql-static is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826022" comment="postgresql-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743012" comment="postgresql-test is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826024" comment="postgresql-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743013" comment="postgresql-upgrade is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826026" comment="postgresql-upgrade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743014" comment="postgresql-upgrade-devel is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826028" comment="postgresql-upgrade-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627743015" comment="postgresql-test-rpm-macros is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202514826030" comment="postgresql-test-rpm-macros is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202638495" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:38495: podman security update (Important)</title>
        <reference ref_id="CVE-2026-39822" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39822"/>
        <reference ref_id="RHSA-2026:38495" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:38495"/>
        <reference ref_id="ALSA-2026:38495" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-38495.html"/>
        <description>The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.  

Security Fix(es):  

  * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-13"/>
          <updated date="2026-07-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2498152" id="2498152"></bugzilla>
          <cve public="20260708" href="https://access.redhat.com/security/cve/CVE-2026-39822" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-39822</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638495001" comment="podman is earlier than 7:5.8.2-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146002" comment="podman is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638495002" comment="podman-remote is earlier than 7:5.8.2-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146004" comment="podman-remote is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638495003" comment="podman-tests is earlier than 7:5.8.2-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146006" comment="podman-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638495004" comment="podman-docker is earlier than 7:5.8.2-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259146008" comment="podman-docker is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202638514" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:38514: plexus-utils security update (Important)</title>
        <reference ref_id="CVE-2025-67030" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-67030"/>
        <reference ref_id="RHSA-2026:38514" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:38514"/>
        <reference ref_id="ALSA-2026:38514" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-38514.html"/>
        <description>The Plexus project seeks to create end-to-end developer tools for writing applications. At the core is the container, which can be embedded or for a full scale application server. There are many reusable components for hibernate, form processing, jndi, i18n, velocity, etc. Plexus also includes an application server which is like a J2EE application server, without all the baggage.  

Security Fix(es):  

  * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method (CVE-2025-67030)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-13"/>
          <updated date="2026-07-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451409" id="2451409"></bugzilla>
          <cve public="20260325" href="https://access.redhat.com/security/cve/CVE-2025-67030" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L">CVE-2025-67030</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638514001" comment="plexus-utils is earlier than 0:3.5.1-9.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638514002" comment="plexus-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638514003" comment="plexus-utils-javadoc is earlier than 0:3.5.1-9.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638514004" comment="plexus-utils-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628584" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28584: libxslt security update (Moderate)</title>
        <reference ref_id="CVE-2025-10911" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-10911"/>
        <reference ref_id="RHSA-2026:28584" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28584"/>
        <reference ref_id="ALSA-2026:28584" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28584.html"/>
        <description>libxslt is a library for transforming XML files into other textual formats (including HTML, plain text, and other XML representations of the underlying data) using the standard XSLT stylesheet transformation mechanism.   

Security Fix(es):  

  * libxslt: use-after-free with key data stored cross-RVT (CVE-2025-10911)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2397838" id="2397838"></bugzilla>
          <cve public="20250804" href="https://access.redhat.com/security/cve/CVE-2025-10911" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2025-10911</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628584001" comment="libxslt is earlier than 0:1.1.39-8.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257496002" comment="libxslt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628584002" comment="libxslt-devel is earlier than 0:1.1.39-8.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257496004" comment="libxslt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628233" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28233: libpng security update (Moderate)</title>
        <reference ref_id="CVE-2026-33416" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33416"/>
        <reference ref_id="CVE-2026-33636" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33636"/>
        <reference ref_id="RHSA-2026:28233" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28233"/>
        <reference ref_id="ALSA-2026:28233" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28233.html"/>
        <description>The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files.  

Security Fix(es):  

  * libpng: libpng: Arbitrary code execution due to use-after-free vulnerability (CVE-2026-33416)
  * libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion (CVE-2026-33636)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2451805" id="2451805"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2451819" id="2451819"></bugzilla>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33416" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-33416</cve>
          <cve public="20260326" href="https://access.redhat.com/security/cve/CVE-2026-33636" impact="Moderate" cwe="CWE-124" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-33636</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628233001" comment="libpng is earlier than 2:1.6.40-11.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618064001" comment="libpng is earlier than 2:1.6.40-8.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202614790001" comment="libpng is earlier than 2:1.6.40-8.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237002" comment="libpng is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628233002" comment="libpng-devel is earlier than 2:1.6.40-11.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202618064002" comment="libpng-devel is earlier than 2:1.6.40-8.el10_1.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202614790002" comment="libpng-devel is earlier than 2:1.6.40-8.el10_1.3"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260237004" comment="libpng-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202629874" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:29874: nginx security update (Important)</title>
        <reference ref_id="CVE-2026-9256" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9256"/>
        <reference ref_id="RHSA-2026:29874" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:29874"/>
        <reference ref_id="ALSA-2026:29874" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-29874.html"/>
        <description>nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.   

Security Fix(es):  

  * nginx: ngx_http_rewrite_module: code execution and denial of service (CVE-2026-9256)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-25"/>
          <updated date="2026-06-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480746" id="2480746"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-9256" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-9256</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874001" comment="nginx is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705002" comment="nginx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874002" comment="nginx-core is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705004" comment="nginx-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874003" comment="nginx-mod-http-image-filter is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705006" comment="nginx-mod-http-image-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874004" comment="nginx-mod-http-perl is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705008" comment="nginx-mod-http-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874005" comment="nginx-mod-http-xslt-filter is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705010" comment="nginx-mod-http-xslt-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874006" comment="nginx-mod-mail is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705012" comment="nginx-mod-mail is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874007" comment="nginx-mod-stream is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705014" comment="nginx-mod-stream is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874008" comment="nginx-mod-devel is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705016" comment="nginx-mod-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874009" comment="nginx-all-modules is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705018" comment="nginx-all-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629874010" comment="nginx-filesystem is earlier than 2:1.26.3-6.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705020" comment="nginx-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628581" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28581: python3.14 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-4786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-4786"/>
        <reference ref_id="CVE-2026-6019" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6019"/>
        <reference ref_id="RHSA-2026:28581" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28581"/>
        <reference ref_id="ALSA-2026:28581" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28581.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786)
  * python: Python: Cross-Site Scripting (XSS) vulnerability in http.cookies module (CVE-2026-6019)


Bug Fix(es) and Enhancement(s):  

  * [10.2.z]Update python3.14 to 3.14.5 for the incremental GC changes (JIRA:AlmaLinux-176147)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2458049" id="2458049"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460869" id="2460869"></bugzilla>
          <cve public="20260413" href="https://access.redhat.com/security/cve/CVE-2026-4786" impact="Important" cwe="CWE-88" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L">CVE-2026-4786</cve>
          <cve public="20260422" href="https://access.redhat.com/security/cve/CVE-2026-6019" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2026-6019</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581001" comment="python3.14 is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581002" comment="python3.14 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581003" comment="python3.14-devel is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581004" comment="python3.14-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581005" comment="python3.14-libs is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581006" comment="python3.14-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581007" comment="python3.14-tkinter is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581008" comment="python3.14-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581009" comment="python3.14-debug is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581010" comment="python3.14-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581011" comment="python3.14-freethreading is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581012" comment="python3.14-freethreading is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581013" comment="python3.14-freethreading-debug is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581014" comment="python3.14-freethreading-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581015" comment="python3.14-freethreading-devel is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581016" comment="python3.14-freethreading-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581017" comment="python3.14-freethreading-idle is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581018" comment="python3.14-freethreading-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581019" comment="python3.14-freethreading-libs is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581020" comment="python3.14-freethreading-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581021" comment="python3.14-freethreading-test is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581022" comment="python3.14-freethreading-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581023" comment="python3.14-freethreading-tkinter is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581024" comment="python3.14-freethreading-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581025" comment="python3.14-idle is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581026" comment="python3.14-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581027" comment="python3.14-test is earlier than 0:3.14.5-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581028" comment="python3.14-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628210" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28210: vim security update (Moderate)</title>
        <reference ref_id="CVE-2026-41411" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-41411"/>
        <reference ref_id="RHSA-2026:28210" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28210"/>
        <reference ref_id="ALSA-2026:28210" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28210.html"/>
        <description>Vim (Vi IMproved) is an updated and improved version of the vi editor.  

Security Fix(es):  

  * vim: Vim: Command injection allows arbitrary code execution via malicious tag files (CVE-2026-41411)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2461614" id="2461614"></bugzilla>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-41411" impact="Moderate" cwe="CWE-78" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-41411</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210001" comment="vim-X11 is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913002" comment="vim-X11 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210002" comment="vim-common is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913004" comment="vim-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210003" comment="vim-enhanced is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913006" comment="vim-enhanced is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210004" comment="xxd is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913010" comment="xxd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210005" comment="vim-minimal is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913008" comment="vim-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210006" comment="vim-data is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913012" comment="vim-data is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628210007" comment="vim-filesystem is earlier than 2:9.1.083-9.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202517913014" comment="vim-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628236" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28236: libsolv security update (Moderate)</title>
        <reference ref_id="CVE-2026-9149" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9149"/>
        <reference ref_id="CVE-2026-9150" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9150"/>
        <reference ref_id="CVE-2026-48864" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48864"/>
        <reference ref_id="RHSA-2026:28236" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28236"/>
        <reference ref_id="ALSA-2026:28236" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28236.html"/>
        <description>The libsolv packages provide a library for resolving package dependencies using a satisfiability algorithm.  

Security Fix(es):  

  * libsolv: Stack-based buffer overflow in libsolv's Debian metadata parser when handling SHA384/SHA512 checksums (CVE-2026-9150)
  * libsolv: Heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file (CVE-2026-9149)
  * libsolv: Heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data (CVE-2026-48864)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460379" id="2460379"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460380" id="2460380"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460425" id="2460425"></bugzilla>
          <cve public="20260520" href="https://access.redhat.com/security/cve/CVE-2026-9149" impact="Moderate" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-9149</cve>
          <cve public="20260520" href="https://access.redhat.com/security/cve/CVE-2026-9150" impact="Moderate" cwe="CWE-121" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-9150</cve>
          <cve public="20260526" href="https://access.redhat.com/security/cve/CVE-2026-48864" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-48864</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236001" comment="libsolv is earlier than 0:0.7.33-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236002" comment="libsolv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236003" comment="python3-solv is earlier than 0:0.7.33-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236004" comment="python3-solv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236005" comment="libsolv-devel is earlier than 0:0.7.33-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236006" comment="libsolv-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236007" comment="libsolv-tools is earlier than 0:0.7.33-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236008" comment="libsolv-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236009" comment="libsolv-tools-base is earlier than 0:0.7.33-5.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628236010" comment="libsolv-tools-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628235" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28235: libtasn1 security update (Low)</title>
        <reference ref_id="CVE-2025-13151" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-13151"/>
        <reference ref_id="RHSA-2026:28235" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28235"/>
        <reference ref_id="ALSA-2026:28235" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28235.html"/>
        <description>A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.  

Security Fix(es):  

  * libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string (CVE-2025-13151)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Low</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2427698" id="2427698"></bugzilla>
          <cve public="20260107" href="https://access.redhat.com/security/cve/CVE-2025-13151" impact="Low" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2025-13151</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628235001" comment="libtasn1 is earlier than 0:4.20.0-5.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628235002" comment="libtasn1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628235003" comment="libtasn1-devel is earlier than 0:4.20.0-5.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628235004" comment="libtasn1-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628235005" comment="libtasn1-tools is earlier than 0:4.20.0-5.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628235006" comment="libtasn1-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202628234" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:28234: libxml2 security update (Low)</title>
        <reference ref_id="CVE-2024-34459" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-34459"/>
        <reference ref_id="RHSA-2026:28234" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:28234"/>
        <reference ref_id="ALSA-2026:28234" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-28234.html"/>
        <description>The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

  * libxml2: buffer over-read in xmlHTMLPrintFileContext in xmllint.c (CVE-2024-34459)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Low</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-23"/>
          <updated date="2026-06-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2280532" id="2280532"></bugzilla>
          <cve public="20240508" href="https://access.redhat.com/security/cve/CVE-2024-34459" impact="Low" cwe="CWE-126" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2024-34459</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628234001" comment="libxml2 is earlier than 0:2.12.5-10.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630002" comment="libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628234002" comment="libxml2-devel is earlier than 0:2.12.5-10.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630004" comment="libxml2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628234003" comment="python3-libxml2 is earlier than 0:2.12.5-10.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630006" comment="python3-libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628234004" comment="libxml2-static is earlier than 0:2.12.5-10.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630008" comment="libxml2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633731" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33731: rrdtool security update (Moderate)</title>
        <reference ref_id="CVE-2026-43958" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43958"/>
        <reference ref_id="RHSA-2026:33731" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33731"/>
        <reference ref_id="ALSA-2026:33731" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33731.html"/>
        <description>The round robin database (RRD) system stores and displays time-series data, such as network bandwidth, machine-room temperature, and server load average. RRDtool is a high performance data logging and graphing utility, which can be easily integrated with shell scripts, or used to create applications using its Perl, Python, Ruby, Lua, Tcl, and PHP bindings. The data is stored in a compact manner that does not expand over time, and RRDtool provides the user with useful graphs by processing the data to enforce a certain data density.  

Security Fix(es):  

  * rrdtool: Stack buffer overflow in rrdcached handle_request_create() allows local privilege escalation via unbounded DS/RRA arguments (CVE-2026-43958)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-30"/>
          <updated date="2026-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460932" id="2460932"></bugzilla>
          <cve public="20260601" href="https://access.redhat.com/security/cve/CVE-2026-43958" impact="Moderate" cwe="CWE-121" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43958</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731001" comment="rrdtool is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731002" comment="rrdtool is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731003" comment="rrdtool-perl is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731004" comment="rrdtool-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731005" comment="python3-rrdtool is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731006" comment="python3-rrdtool is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731007" comment="rrdtool-devel is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731008" comment="rrdtool-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731009" comment="rrdtool-doc is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731010" comment="rrdtool-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731011" comment="rrdtool-lua is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731012" comment="rrdtool-lua is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731013" comment="rrdtool-ruby is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731014" comment="rrdtool-ruby is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731015" comment="rrdtool-tcl is earlier than 0:1.8.0-21.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633731016" comment="rrdtool-tcl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202629195" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:29195: buildah security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="CVE-2026-32280" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32280"/>
        <reference ref_id="CVE-2026-32281" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32281"/>
        <reference ref_id="CVE-2026-32283" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32283"/>
        <reference ref_id="RHSA-2026:29195" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:29195"/>
        <reference ref_id="ALSA-2026:29195" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-29195.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)
  * crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation (CVE-2026-32281)
  * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283)
  * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-24"/>
          <updated date="2026-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456333" id="2456333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456338" id="2456338"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456339" id="2456339"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32280" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32280</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32281" impact="Moderate" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32281</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32283" impact="Important" cwe="CWE-764" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629195001" comment="buildah is earlier than 2:1.43.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629195002" comment="buildah-tests is earlier than 2:1.43.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202638494" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:38494: buildah security update (Important)</title>
        <reference ref_id="CVE-2026-39822" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39822"/>
        <reference ref_id="RHSA-2026:38494" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:38494"/>
        <reference ref_id="ALSA-2026:38494" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-38494.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-13"/>
          <updated date="2026-07-13"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2498152" id="2498152"></bugzilla>
          <cve public="20260708" href="https://access.redhat.com/security/cve/CVE-2026-39822" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-39822</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638494001" comment="buildah is earlier than 2:1.43.1-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202638494002" comment="buildah-tests is earlier than 2:1.43.1-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202629035" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:29035: skopeo security update (Important)</title>
        <reference ref_id="CVE-2026-25679" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25679"/>
        <reference ref_id="CVE-2026-32280" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32280"/>
        <reference ref_id="CVE-2026-32281" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32281"/>
        <reference ref_id="CVE-2026-32283" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-32283"/>
        <reference ref_id="RHSA-2026:29035" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:29035"/>
        <reference ref_id="ALSA-2026:29035" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-29035.html"/>
        <description>The skopeo command lets you inspect images from container image registries, get images and image layers, and use signatures to create and verify files.   

Security Fix(es):  

  * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)
  * crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation (CVE-2026-32281)
  * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283)
  * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-24"/>
          <updated date="2026-06-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445356" id="2445356"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456333" id="2456333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456338" id="2456338"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2456339" id="2456339"></bugzilla>
          <cve public="20260306" href="https://access.redhat.com/security/cve/CVE-2026-25679" impact="Important" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-25679</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32280" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32280</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32281" impact="Moderate" cwe="CWE-1050" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32281</cve>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-32283" impact="Important" cwe="CWE-764" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-32283</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629035001" comment="skopeo is earlier than 2:1.22.2-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149002" comment="skopeo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629035002" comment="skopeo-tests is earlier than 2:1.22.2-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259149004" comment="skopeo-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639304" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39304: libxml2 security update (Low)</title>
        <reference ref_id="CVE-2025-6170" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-6170"/>
        <reference ref_id="RHSA-2026:39304" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39304"/>
        <reference ref_id="ALSA-2026:39304" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39304.html"/>
        <description>The libxml2 library is a development toolbox providing the implementation of various XML standards.  

Security Fix(es):  

  * libxml2: Stack Buffer Overflow in xmllint Interactive Shell Command Handling (CVE-2025-6170)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Low</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2372952" id="2372952"></bugzilla>
          <cve public="20250616" href="https://access.redhat.com/security/cve/CVE-2025-6170" impact="Low" cwe="CWE-121" cvss3="CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L">CVE-2025-6170</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639304001" comment="libxml2 is earlier than 0:2.12.5-10.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630002" comment="libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639304002" comment="libxml2-devel is earlier than 0:2.12.5-10.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630004" comment="libxml2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639304003" comment="python3-libxml2 is earlier than 0:2.12.5-10.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630006" comment="python3-libxml2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639304004" comment="libxml2-static is earlier than 0:2.12.5-10.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510630008" comment="libxml2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639302" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39302: cups security update (Moderate)</title>
        <reference ref_id="CVE-2026-34980" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34980"/>
        <reference ref_id="RHSA-2026:39302" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39302"/>
        <reference ref_id="ALSA-2026:39302" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39302.html"/>
        <description>The Common UNIX Printing System (CUPS) provides a portable printing layer for Linux, UNIX, and similar operating systems.  

Security Fix(es):  

  * cups: OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the network (CVE-2026-34980)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2454954" id="2454954"></bugzilla>
          <cve public="20260403" href="https://access.redhat.com/security/cve/CVE-2026-34980" impact="Moderate" cwe="CWE-78" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L">CVE-2026-34980</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302001" comment="cups is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701002" comment="cups is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302002" comment="cups-client is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701004" comment="cups-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302003" comment="cups-devel is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701006" comment="cups-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302004" comment="cups-ipptool is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701008" comment="cups-ipptool is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302005" comment="cups-libs is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701010" comment="cups-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302006" comment="cups-lpd is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701012" comment="cups-lpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302007" comment="cups-printerapp is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701014" comment="cups-printerapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639302008" comment="cups-filesystem is earlier than 1:2.4.10-18.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515701016" comment="cups-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202630129" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:30129: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-31636" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31636"/>
        <reference ref_id="CVE-2026-43038" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43038"/>
        <reference ref_id="CVE-2026-43198" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43198"/>
        <reference ref_id="CVE-2026-43414" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43414"/>
        <reference ref_id="CVE-2026-45898" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45898"/>
        <reference ref_id="CVE-2026-46117" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46117"/>
        <reference ref_id="CVE-2026-46135" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46135"/>
        <reference ref_id="CVE-2026-46145" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46145"/>
        <reference ref_id="RHSA-2026:30129" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:30129"/>
        <reference ref_id="ALSA-2026:30129" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-30129.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: rxrpc: fix RESPONSE authenticator parser OOB read (CVE-2026-31636)
  * kernel: ipv6: icmp: clear skb2-&gt;cb[] in ip6_err_gen_icmpv6_unreach() (CVE-2026-43038)
  * kernel: tcp: fix potential race in tcp_v6_syn_recv_sock() (CVE-2026-43198)
  * kernel: scsi: qla2xxx: Completely fix fcport double free (CVE-2026-43414)
  * kernel: RDMA/iwcm: Fix workqueue list corruption by removing work_list (CVE-2026-45898)
  * kernel: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() (CVE-2026-46117)
  * kernel: RDMA/mana: Validate rx_hash_key_len (CVE-2026-46145)
  * kernel: nvmet-tcp: fix race between ICReq handling and queue teardown (CVE-2026-46135)
  * kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CVE-2026-46316)


Bug Fix(es) and Enhancement(s):  

  * Unexpected execmem SELinux denials after CVE-2026-46054 fix [rhel-10.2.z] (JIRA:RHEL-185117)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-25"/>
          <updated date="2026-06-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2461510" id="2461510"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464397" id="2464397"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467228" id="2467228"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468155" id="2468155"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482031" id="2482031"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482576" id="2482576"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482581" id="2482581"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482654" id="2482654"></bugzilla>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-31636" impact="Moderate" cwe="CWE-805" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-31636</cve>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-43038" impact="Important" cwe="CWE-843" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-43038</cve>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43198" impact="Important" cwe="CWE-821" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43198</cve>
          <cve public="20260508" href="https://access.redhat.com/security/cve/CVE-2026-43414" impact="Moderate" cwe="CWE-1341" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-43414</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-45898" impact="Important" cwe="CWE-1341" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-45898</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46117" impact="Important" cwe="CWE-1288" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46117</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46135" impact="Moderate" cwe="CWE-1341" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-46135</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46145" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46145</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129001" comment="kernel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129002" comment="kernel-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129003" comment="kernel-debug is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129004" comment="kernel-debug-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129011" comment="kernel-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129013" comment="kernel-headers is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129014" comment="kernel-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129015" comment="kernel-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129018" comment="kernel-rt is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129019" comment="kernel-rt-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129030" comment="kernel-tools is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129034" comment="perf is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129035" comment="python3-perf is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129036" comment="rtla is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129037" comment="rv is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129045" comment="kernel-64k is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129046" comment="kernel-64k-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129073" comment="libperf is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202630129075" comment="kernel-doc is earlier than 0:6.12.0-211.28.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202630846" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:30846: thunderbird security update (Important)</title>
        <reference ref_id="CVE-2026-12289" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12289"/>
        <reference ref_id="CVE-2026-12290" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12290"/>
        <reference ref_id="CVE-2026-12291" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12291"/>
        <reference ref_id="CVE-2026-12292" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12292"/>
        <reference ref_id="CVE-2026-12294" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12294"/>
        <reference ref_id="CVE-2026-12295" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12295"/>
        <reference ref_id="CVE-2026-12296" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12296"/>
        <reference ref_id="CVE-2026-12297" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12297"/>
        <reference ref_id="CVE-2026-12298" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12298"/>
        <reference ref_id="CVE-2026-12299" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12299"/>
        <reference ref_id="CVE-2026-12302" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12302"/>
        <reference ref_id="CVE-2026-12304" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12304"/>
        <reference ref_id="CVE-2026-12305" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12305"/>
        <reference ref_id="CVE-2026-12306" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12306"/>
        <reference ref_id="CVE-2026-12307" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12307"/>
        <reference ref_id="CVE-2026-12308" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12308"/>
        <reference ref_id="CVE-2026-12309" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12309"/>
        <reference ref_id="CVE-2026-12310" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12310"/>
        <reference ref_id="CVE-2026-12311" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12311"/>
        <reference ref_id="CVE-2026-12312" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12312"/>
        <reference ref_id="CVE-2026-12313" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12313"/>
        <reference ref_id="CVE-2026-12314" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12314"/>
        <reference ref_id="CVE-2026-12315" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12315"/>
        <reference ref_id="CVE-2026-12324" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12324"/>
        <reference ref_id="CVE-2026-12325" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12325"/>
        <reference ref_id="CVE-2026-12327" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12327"/>
        <reference ref_id="CVE-2026-12328" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12328"/>
        <reference ref_id="CVE-2026-12329" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12329"/>
        <reference ref_id="CVE-2026-12330" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12330"/>
        <reference ref_id="RHSA-2026:30846" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:30846"/>
        <reference ref_id="ALSA-2026:30846" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-30846.html"/>
        <description>Mozilla Thunderbird is a standalone mail and newsgroup client.  

Security Fix(es):  

  * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)
  * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing component (CVE-2026-12313)
  * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing component (CVE-2026-12311)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12327)
  * firefox: thunderbird: JIT miscompilation in the DOM: Core &amp; HTML component (CVE-2026-12299)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)
  * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)
  * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component (CVE-2026-12330)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)
  * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)
  * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)
  * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)
  * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)
  * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)
  * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component (CVE-2026-12297)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)
  * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)
  * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)
  * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component (CVE-2026-12324)
  * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)
  * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)
  * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2489207" id="2489207"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489208" id="2489208"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489209" id="2489209"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489210" id="2489210"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489211" id="2489211"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489212" id="2489212"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489214" id="2489214"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489215" id="2489215"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489217" id="2489217"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489218" id="2489218"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489220" id="2489220"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489221" id="2489221"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489223" id="2489223"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489224" id="2489224"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489225" id="2489225"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489226" id="2489226"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489229" id="2489229"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489231" id="2489231"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489232" id="2489232"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489233" id="2489233"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489234" id="2489234"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489235" id="2489235"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489236" id="2489236"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489237" id="2489237"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489239" id="2489239"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489240" id="2489240"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489243" id="2489243"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489244" id="2489244"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489248" id="2489248"></bugzilla>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12289" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12289</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12290" impact="Important" cwe="CWE-823" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12290</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12291" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12291</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12292" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12292</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12294" impact="Important" cwe="CWE-266" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12294</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12295" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12295</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12296" impact="Important" cwe="CWE-403" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12296</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12297" impact="Important" cwe="CWE-653" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12297</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12298" impact="Important" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12298</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12299" impact="Important" cwe="CWE-733" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12299</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12302" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12302</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12304" impact="Moderate" cwe="CWE-346" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12304</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12305" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12305</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12306" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12306</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12307" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12307</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12308" impact="Moderate" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12308</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12309" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12309</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12310" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12310</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12311" impact="Moderate" cwe="CWE-243" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12311</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12312" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12312</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12313" impact="Moderate" cwe="CWE-403" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12313</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12314" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12314</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12315" impact="Moderate" cwe="CWE-807" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12315</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12324" impact="Low" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-12324</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12325" impact="Low" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N">CVE-2026-12325</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12327" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12327</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12328" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12328</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12329" impact="Important" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-12329</cve>
          <cve public="20260616" href="https://access.redhat.com/security/cve/CVE-2026-12330" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N">CVE-2026-12330</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630846001" comment="thunderbird is earlier than 0:140.12.0-1.el10_2.alma.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258196002" comment="thunderbird is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639296" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39296: libinput security update (Moderate)</title>
        <reference ref_id="CVE-2026-50292" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50292"/>
        <reference ref_id="RHSA-2026:39296" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39296"/>
        <reference ref_id="ALSA-2026:39296" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39296.html"/>
        <description>libinput is a library that handles input devices for display servers and other applications that need to directly deal with input devices.  

Security Fix(es):  

  * libinput: local privilege escalation via crafted uinput devices (CVE-2026-50292)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2485390" id="2485390"></bugzilla>
          <cve public="20260605" href="https://access.redhat.com/security/cve/CVE-2026-50292" impact="Moderate" cwe="CWE-78" cvss3="CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H">CVE-2026-50292</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639296001" comment="libinput is earlier than 0:1.30.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639296002" comment="libinput is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639296003" comment="libinput-utils is earlier than 0:1.30.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639296004" comment="libinput-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639296005" comment="libinput-devel is earlier than 0:1.30.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639296006" comment="libinput-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202627288" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:27288: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-31474" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31474"/>
        <reference ref_id="CVE-2026-31641" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31641"/>
        <reference ref_id="CVE-2026-31669" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31669"/>
        <reference ref_id="CVE-2026-31772" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31772"/>
        <reference ref_id="CVE-2026-31786" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31786"/>
        <reference ref_id="CVE-2026-31787" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31787"/>
        <reference ref_id="CVE-2026-43056" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43056"/>
        <reference ref_id="CVE-2026-43260" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43260"/>
        <reference ref_id="CVE-2026-43330" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43330"/>
        <reference ref_id="CVE-2026-46056" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46056"/>
        <reference ref_id="CVE-2026-46125" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46125"/>
        <reference ref_id="CVE-2026-46152" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46152"/>
        <reference ref_id="CVE-2026-46166" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46166"/>
        <reference ref_id="CVE-2026-46173" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46173"/>
        <reference ref_id="CVE-2026-46331" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46331"/>
        <reference ref_id="RHSA-2026:27288" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:27288"/>
        <reference ref_id="ALSA-2026:27288" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-27288.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: can: isotp: fix tx.buf use-after-free in isotp_sendmsg() (CVE-2026-31474)
  * kernel: mptcp: fix slab-use-after-free in __inet_lookup_established (CVE-2026-31669)
  * kernel: rxrpc: Fix RxGK token loading to check bounds (CVE-2026-31641)
  * kernel: xen/privcmd: fix double free via VMA splitting (CVE-2026-31787)
  * kernel: Buffer overflow in drivers/xen/sys-hypervisor.c (CVE-2026-31786)
  * kernel: net: mana: fix use-after-free in add_adev() error path (CVE-2026-43056)
  * kernel: Bluetooth: hci_sync: fix stack buffer overflow in hci_le_big_create_sync (CVE-2026-31772)
  * kernel: bnxt_en: Fix RSS context delete logic (CVE-2026-43260)
  * kernel: crypto: caam - fix overflow on long hmac keys (CVE-2026-43330)
  * kernel: net/sched: act_pedit: extend the writable skb range per key (CVE-2026-46331)
  * kernel: Bluetooth: hci_event: fix potential UAF in SSP passkey handlers (CVE-2026-46056)
  * kernel: wifi: mac80211: drop stray 'static' from fast-RX rx_result (CVE-2026-46152)
  * kernel: wifi: mac80211: remove station if connection prep fails (CVE-2026-46125)
  * kernel: exit: prevent preemption of oopsing TASK_DEAD task (CVE-2026-46173)
  * kernel: wifi: mac80211: use safe list iteration in radar detect work (CVE-2026-46166)


Bug Fix(es) and Enhancement(s):  

  * AlmaLinux10.0 - s390/ap: Expose ap_bindings_complete_count counter via sysfs [almalinux-10.2.z] (JIRA:AlmaLinux-166047)
  * AlmaLinux9.5 crash due to lpfc NULL ndlp-&gt;vport [almalinux-10.2.z] (JIRA:AlmaLinux-171774)
  * objtool static_call check blocks build of out-of-tree livepatch modules on AlmaLinux 10.2 GA kernels ? missing upstream revert f495054bd12e (JIRA:AlmaLinux-178495)
  * ibmveth Adapter Freeze with Small MSS [almalinux-10.2.z] (JIRA:AlmaLinux-179723)
  * rbd: eliminate a race in lock_dwork draining on unmap [almalinux-10.2.z] (JIRA:AlmaLinux-183127)
  * AlmaLinux10.0 - s390/mm: Add missing secure storage access fixups [almalinux-10.2.z] (JIRA:AlmaLinux-183319)
  * [AlmaLinux10.2.z] Enable Pretimeout Watchdog Panic Functionality on x86 (JIRA:AlmaLinux-182299)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-19"/>
          <updated date="2026-06-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460646" id="2460646"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2461503" id="2461503"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2461548" id="2461548"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464092" id="2464092"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464096" id="2464096"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464449" id="2464449"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464502" id="2464502"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467083" id="2467083"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468061" id="2468061"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2479492" id="2479492"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482181" id="2482181"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482563" id="2482563"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482608" id="2482608"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482634" id="2482634"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482645" id="2482645"></bugzilla>
          <cve public="20260422" href="https://access.redhat.com/security/cve/CVE-2026-31474" impact="Important" cwe="CWE-364" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31474</cve>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-31641" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-31641</cve>
          <cve public="20260424" href="https://access.redhat.com/security/cve/CVE-2026-31669" impact="Moderate" cwe="CWE-763" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31669</cve>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-31772" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31772</cve>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-31786" impact="Moderate" cwe="CWE-170" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-31786</cve>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-31787" impact="Moderate" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-31787</cve>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-43056" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-43056</cve>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43260" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-43260</cve>
          <cve public="20260508" href="https://access.redhat.com/security/cve/CVE-2026-43330" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-43330</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-46056" impact="Moderate" cwe="CWE-413" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-46056</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46125" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46125</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46152" impact="Important" cwe="CWE-1058" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46152</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46166" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46166</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46173" impact="Moderate" cwe="CWE-1341" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46173</cve>
          <cve public="20260518" href="https://access.redhat.com/security/cve/CVE-2026-46331" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46331</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288001" comment="kernel-rt-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288002" comment="kernel-rt-debug is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288003" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288004" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288005" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288006" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288007" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288008" comment="kernel-rt-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288009" comment="kernel-rt-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288010" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288011" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288012" comment="kernel-tools is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288013" comment="kernel-tools-libs is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288014" comment="kernel-uki-virt is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288015" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288016" comment="perf is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288017" comment="python3-perf is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288018" comment="rtla is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288019" comment="kernel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288020" comment="kernel-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288021" comment="kernel-debug is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288022" comment="kernel-debug-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288023" comment="kernel-debug-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288024" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288025" comment="kernel-debug-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288026" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288027" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288028" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288029" comment="kernel-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288030" comment="kernel-devel-matched is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288031" comment="kernel-headers is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288032" comment="kernel-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288033" comment="kernel-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288034" comment="kernel-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288035" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288036" comment="kernel-rt is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288037" comment="rv is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288045" comment="kernel-64k is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288046" comment="kernel-64k-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288073" comment="libperf is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202627288075" comment="kernel-doc is earlier than 0:6.12.0-211.26.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202619043" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:19043: corosync security update (Moderate)</title>
        <reference ref_id="CVE-2026-35091" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35091"/>
        <reference ref_id="CVE-2026-35092" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-35092"/>
        <reference ref_id="RHSA-2026:19043" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:19043"/>
        <reference ref_id="ALSA-2026:19043" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-19043.html"/>
        <description>The corosync packages provide the Corosync Cluster Engine and C APIs for AlmaLinux cluster software.  

Security Fix(es):  

  * corosync: Corosync: Denial of Service and information disclosure via crafted UDP packet (CVE-2026-35091)
  * corosync: Corosync: Denial of Service via integer overflow in join message validation (CVE-2026-35092)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-19"/>
          <updated date="2026-05-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2453813" id="2453813"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2453814" id="2453814"></bugzilla>
          <cve public="20260401" href="https://access.redhat.com/security/cve/CVE-2026-35091" impact="Moderate" cwe="CWE-253" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-35091</cve>
          <cve public="20260401" href="https://access.redhat.com/security/cve/CVE-2026-35092" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-35092</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619043001" comment="corosynclib is earlier than 0:3.1.10-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478002" comment="corosynclib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619043002" comment="corosync is earlier than 0:3.1.10-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644003" comment="corosync is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619043003" comment="corosynclib-devel is earlier than 0:3.1.10-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613644005" comment="corosynclib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619043004" comment="corosync-vqsim is earlier than 0:3.1.10-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257478004" comment="corosync-vqsim is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202629980" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:29980: golang security, bug fix, and enhancement update (Moderate)</title>
        <reference ref_id="CVE-2026-42507" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42507"/>
        <reference ref_id="RHSA-2026:29980" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:29980"/>
        <reference ref_id="ALSA-2026:29980" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-29980.html"/>
        <description>The golang packages provide the Go programming language compiler.  

Security Fix(es):  

  * net/textproto: golang: Golang net/textproto: Misleading error messages via input injection (CVE-2026-42507)


Bug Fix(es) and Enhancement(s):  

  * Update Go to version 1.26.4+1 [almalinux-10.2.z] (JIRA:AlmaLinux-183347)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-25"/>
          <updated date="2026-06-25"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2484205" id="2484205"></bugzilla>
          <cve public="20260602" href="https://access.redhat.com/security/cve/CVE-2026-42507" impact="Moderate" cwe="CWE-117" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-42507</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980001" comment="go-toolset is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477002" comment="go-toolset is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980002" comment="golang is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477004" comment="golang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980003" comment="golang-bin is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477006" comment="golang-bin is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980004" comment="golang-race is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510677005" comment="golang-race is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980005" comment="golang-tests is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477014" comment="golang-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980006" comment="golang-docs is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477012" comment="golang-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980007" comment="golang-misc is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477008" comment="golang-misc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202629980008" comment="golang-src is earlier than 0:1.26.4-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258477010" comment="golang-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639183" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39183: python3.12 security update (Important)</title>
        <reference ref_id="CVE-2026-15308" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-15308"/>
        <reference ref_id="RHSA-2026:39183" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39183"/>
        <reference ref_id="ALSA-2026:39183" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39183.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python: Python: CPU Denial of Service in HTML parser via repeated unterminated markup declarations (CVE-2026-15308)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2498608" id="2498608"></bugzilla>
          <cve public="20260709" href="https://access.redhat.com/security/cve/CVE-2026-15308" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-15308</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183001" comment="python3 is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140002" comment="python3 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183002" comment="python3-devel is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140004" comment="python3-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183003" comment="python3-libs is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140006" comment="python3-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183004" comment="python3-tkinter is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140008" comment="python3-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183005" comment="python3-debug is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140010" comment="python3-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183006" comment="python3-idle is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140012" comment="python3-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183007" comment="python3-test is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140014" comment="python3-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639183008" comment="python-unversioned-command is earlier than 0:3.12.13-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202510140016" comment="python-unversioned-command is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202630857" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:30857: perl-Archive-Tar security update (Important)</title>
        <reference ref_id="CVE-2026-42496" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42496"/>
        <reference ref_id="RHSA-2026:30857" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:30857"/>
        <reference ref_id="ALSA-2026:30857" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-30857.html"/>
        <description>Archive::Tar provides an object oriented mechanism for handling tar files. It provides class methods for quick and easy files handling while also allowing for the creation of tar file objects for custom manipulation. If you have the IO::Zlib module installed, Archive::Tar will also support compressed or gzipped tar files.  

Security Fix(es):  

  * perl-archive-tar: perl-archive-tar: Path traversal via crafted symlinks allows arbitrary file access (CVE-2026-42496)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2481314" id="2481314"></bugzilla>
          <cve public="20260526" href="https://access.redhat.com/security/cve/CVE-2026-42496" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H">CVE-2026-42496</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630857001" comment="perl-Archive-Tar is earlier than 0:3.02-512.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630857002" comment="perl-Archive-Tar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202622649" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:22649: php8.4 security update (Important)</title>
        <reference ref_id="CVE-2026-6104" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6104"/>
        <reference ref_id="CVE-2026-6735" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6735"/>
        <reference ref_id="CVE-2026-7258" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7258"/>
        <reference ref_id="CVE-2026-7262" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7262"/>
        <reference ref_id="CVE-2026-7263" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7263"/>
        <reference ref_id="CVE-2026-7568" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-7568"/>
        <reference ref_id="RHSA-2026:22649" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:22649"/>
        <reference ref_id="ALSA-2026:22649" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-22649.html"/>
        <description>PHP is an HTML-embedded scripting language. PHP attempts to make it easy for developers to write dynamically generated web pages. PHP also offers built-in database integration for several commercial and non-commercial database management systems, so writing a database-enabled webpage with PHP is fairly simple. The most common use of PHP coding is probably as a replacement for CGI scripts.  

Security Fix(es):  

  * PHP: PHP: Denial of Service via improper handling of signed characters in ctype functions (CVE-2026-7258)
  * PHP: PHP-FPM: PHP-FPM: Cross-Site Scripting vulnerability via improper URL sanitation (CVE-2026-6735)
  * php: NULL pointer dereference in SOAP apache:Map decoder with missing &lt;value&gt; (CVE-2026-7262)
  * php: signed integer overflow in metaphone() (CVE-2026-7568)
  * php: denial of service via DOMNode::C14N() (CVE-2026-7263)
  * php: global buffer over-read in mb_convert_encoding() with attacker-supplied encoding (CVE-2026-6104)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-02"/>
          <updated date="2026-06-02"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2468561" id="2468561"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468562" id="2468562"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468565" id="2468565"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468566" id="2468566"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468572" id="2468572"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468573" id="2468573"></bugzilla>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-6104" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-6104</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-6735" impact="Moderate" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N">CVE-2026-6735</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7258" impact="Moderate" cwe="CWE-839" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7258</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7262" impact="Important" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7262</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7263" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7263</cve>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-7568" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-7568</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649001" comment="php8.4-snmp is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649002" comment="php8.4-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649003" comment="php8.4-soap is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649004" comment="php8.4-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649005" comment="php8.4-xml is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649006" comment="php8.4-xml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649007" comment="php8.4 is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649008" comment="php8.4 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649009" comment="php8.4-bcmath is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649010" comment="php8.4-bcmath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649011" comment="php8.4-cli is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649012" comment="php8.4-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649013" comment="php8.4-common is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649014" comment="php8.4-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649015" comment="php8.4-dba is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649016" comment="php8.4-dba is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649017" comment="php8.4-dbg is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649018" comment="php8.4-dbg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649019" comment="php8.4-devel is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649020" comment="php8.4-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649021" comment="php8.4-embedded is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649022" comment="php8.4-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649023" comment="php8.4-enchant is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649024" comment="php8.4-enchant is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649025" comment="php8.4-ffi is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649026" comment="php8.4-ffi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649027" comment="php8.4-fpm is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649028" comment="php8.4-fpm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649029" comment="php8.4-gd is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649030" comment="php8.4-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649031" comment="php8.4-gmp is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649032" comment="php8.4-gmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649033" comment="php8.4-intl is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649034" comment="php8.4-intl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649035" comment="php8.4-ldap is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649036" comment="php8.4-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649037" comment="php8.4-mbstring is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649038" comment="php8.4-mbstring is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649039" comment="php8.4-mysqlnd is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649040" comment="php8.4-mysqlnd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649041" comment="php8.4-odbc is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649042" comment="php8.4-odbc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649043" comment="php8.4-opcache is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649044" comment="php8.4-opcache is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649045" comment="php8.4-pdo is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649046" comment="php8.4-pdo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649047" comment="php8.4-pgsql is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649048" comment="php8.4-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649049" comment="php8.4-process is earlier than 0:8.4.21-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202622649050" comment="php8.4-process is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633124" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33124: coreutils security update (Moderate)</title>
        <reference ref_id="CVE-2025-5278" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-5278"/>
        <reference ref_id="RHSA-2026:33124" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33124"/>
        <reference ref_id="ALSA-2026:33124" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33124.html"/>
        <description>The coreutils packages contain the GNU Core Utilities and represent a combination of the previously used GNU fileutils, sh-utils, and textutils packages.  

Security Fix(es):  

  * coreutils: Heap Buffer Under-Read in GNU Coreutils sort via Key Specification (CVE-2025-5278)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2368764" id="2368764"></bugzilla>
          <cve public="20250527" href="https://access.redhat.com/security/cve/CVE-2025-5278" impact="Moderate" cwe="CWE-121" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L">CVE-2025-5278</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633124001" comment="coreutils-common is earlier than 0:9.5-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633124002" comment="coreutils-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633124003" comment="coreutils-single is earlier than 0:9.5-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633124004" comment="coreutils-single is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633124005" comment="coreutils is earlier than 0:9.5-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633124006" comment="coreutils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639494" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39494: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-53016" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53016"/>
        <reference ref_id="RHSA-2026:39494" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39494"/>
        <reference ref_id="ALSA-2026:39494" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39494.html"/>
        <reference ref_id="CVE-2026-64600" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-64600.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: crypto: ccp - copy IV using skcipher ivsize (CVE-2026-53016)
  * kernel: XFS data corruption using reflink ()


Bug Fix(es) and Enhancement(s):  

  * [Exploits (KEV)] kernel: XFS data corruption using reflink [almalinux-10.2.z] (JIRA:AlmaLinux-193945)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2492269" id="2492269"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2498915" id="2498915"></bugzilla>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-53016" impact="Moderate" cwe="CWE-805" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-53016</cve>
          <cve public="20260714" href="https://www.redhat.com/security/data/cve/CVE-2026-64600.html" impact="Important" cwe="CWE-362" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-64600</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494001" comment="perf is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494002" comment="kernel-rt-debug is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494003" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494004" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494005" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494006" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494007" comment="kernel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494008" comment="kernel-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494009" comment="kernel-debug is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494010" comment="kernel-debug-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494011" comment="kernel-debug-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494012" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494013" comment="kernel-debug-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494014" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494015" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494016" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494017" comment="kernel-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494018" comment="kernel-devel-matched is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494019" comment="kernel-headers is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494020" comment="kernel-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494021" comment="kernel-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494022" comment="kernel-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494023" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494024" comment="kernel-rt is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494025" comment="kernel-rt-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494026" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494027" comment="kernel-rt-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494028" comment="kernel-rt-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494031" comment="kernel-tools is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494032" comment="kernel-tools-libs is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494033" comment="kernel-uki-virt is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494035" comment="python3-perf is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494036" comment="rtla is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494037" comment="rv is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494045" comment="kernel-64k is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494046" comment="kernel-64k-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494073" comment="libperf is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639494075" comment="kernel-doc is earlier than 0:6.12.0-211.34.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202640856" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:40856: python3.14 security update (Important)</title>
        <reference ref_id="CVE-2026-15308" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-15308"/>
        <reference ref_id="RHSA-2026:40856" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:40856"/>
        <reference ref_id="ALSA-2026:40856" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-40856.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python: Python: CPU Denial of Service in HTML parser via repeated unterminated markup declarations (CVE-2026-15308)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-16"/>
          <updated date="2026-07-16"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2498608" id="2498608"></bugzilla>
          <cve public="20260709" href="https://access.redhat.com/security/cve/CVE-2026-15308" impact="Important" cwe="CWE-835" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-15308</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856001" comment="python3.14 is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581002" comment="python3.14 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856002" comment="python3.14-devel is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581004" comment="python3.14-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856003" comment="python3.14-libs is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581006" comment="python3.14-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856004" comment="python3.14-tkinter is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581008" comment="python3.14-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856005" comment="python3.14-debug is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581010" comment="python3.14-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856006" comment="python3.14-freethreading is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581012" comment="python3.14-freethreading is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856007" comment="python3.14-freethreading-debug is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581014" comment="python3.14-freethreading-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856008" comment="python3.14-freethreading-devel is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581016" comment="python3.14-freethreading-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856009" comment="python3.14-freethreading-idle is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581018" comment="python3.14-freethreading-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856010" comment="python3.14-freethreading-libs is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581020" comment="python3.14-freethreading-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856011" comment="python3.14-freethreading-test is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581022" comment="python3.14-freethreading-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856012" comment="python3.14-freethreading-tkinter is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581024" comment="python3.14-freethreading-tkinter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856013" comment="python3.14-idle is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581026" comment="python3.14-idle is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202640856014" comment="python3.14-test is earlier than 0:3.14.5-1.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202628581028" comment="python3.14-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633412" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33412: galera and mariadb11.8 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-49261" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-49261"/>
        <reference ref_id="RHSA-2026:33412" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33412"/>
        <reference ref_id="ALSA-2026:33412" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33412.html"/>
        <description>MariaDB is a community developed fork from MySQL - a multi-user, multi-threaded SQL database server. It is a client/server implementation consisting of a server daemon (mariadbd) and many different client programs and libraries. The base package contains the standard MariaDB/MySQL client programs and utilities.  

Security Fix(es):  

  * mariadb: MariaDB Server: Arbitrary code execution via wsrep_notify_cmd (CVE-2026-49261)


Bug Fix(es) and Enhancement(s):  

  * Rebase MariaDB 11.8 to 11.8.8 in AlmaLinux10 (JIRA:AlmaLinux-183084)
  * Rebase Galera to 26.4.27 in AlmaLinux10 (JIRA:AlmaLinux-183259)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-30"/>
          <updated date="2026-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487957" id="2487957"></bugzilla>
          <cve public="20260611" href="https://access.redhat.com/security/cve/CVE-2026-49261" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H">CVE-2026-49261</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412001" comment="galera is earlier than 0:26.4.27-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412002" comment="galera is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412003" comment="mariadb11.8-server-galera is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412004" comment="mariadb11.8-server-galera is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412005" comment="mariadb11.8-test is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412006" comment="mariadb11.8-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412007" comment="mariadb11.8 is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412008" comment="mariadb11.8 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412009" comment="mariadb11.8-backup is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412010" comment="mariadb11.8-backup is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412011" comment="mariadb11.8-devel is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412012" comment="mariadb11.8-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412013" comment="mariadb11.8-embedded is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412014" comment="mariadb11.8-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412015" comment="mariadb11.8-embedded-devel is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412016" comment="mariadb11.8-embedded-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412017" comment="mariadb11.8-gssapi-server is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412018" comment="mariadb11.8-gssapi-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412019" comment="mariadb11.8-oqgraph-engine is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412020" comment="mariadb11.8-oqgraph-engine is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412021" comment="mariadb11.8-pam is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412022" comment="mariadb11.8-pam is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412023" comment="mariadb11.8-server is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412024" comment="mariadb11.8-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412025" comment="mariadb11.8-client-utils is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412026" comment="mariadb11.8-client-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412027" comment="mariadb11.8-common is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412028" comment="mariadb11.8-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412029" comment="mariadb11.8-errmsg is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412030" comment="mariadb11.8-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412031" comment="mariadb11.8-server-utils is earlier than 3:11.8.8-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633412032" comment="mariadb11.8-server-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202630860" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:30860: perl-IO-Compress security update (Important)</title>
        <reference ref_id="CVE-2026-48962" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48962"/>
        <reference ref_id="RHSA-2026:30860" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:30860"/>
        <reference ref_id="ALSA-2026:30860" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-30860.html"/>
        <description>This distribution provides a Perl interface to allow reading and writing of compressed data created with the zlib and bzip2 libraries. IO-Compress supports reading and writing of bzip2, RFC 1950, RFC 1951, RFC 1952 (i.e. gzip) and zip files/buffers. The following modules used to be distributed separately, but are now included with the IO-Compress distribution:  

  * Compress-Zlib
  * IO-Compress-Zlib
  * IO-Compress-Bzip2
  * IO-Compress-Base


Security Fix(es):  

  * perl-IO-Compress: perl-IO-Compress: Arbitrary code execution via attacker-controlled output glob (CVE-2026-48962)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2481767" id="2481767"></bugzilla>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-48962" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-48962</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630860001" comment="perl-IO-Compress is earlier than 0:2.212-512.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630860002" comment="perl-IO-Compress is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633093" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33093: mariadb10.11 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-49261" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-49261"/>
        <reference ref_id="RHSA-2026:33093" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33093"/>
        <reference ref_id="ALSA-2026:33093" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33093.html"/>
        <description>MariaDB is a community developed fork from MySQL - a multi-user, multi-threaded SQL database server. It is a client/server implementation consisting of a server daemon (mariadbd) and many different client programs and libraries. The base package contains the standard MariaDB/MySQL client programs and utilities.  

Security Fix(es):  

  * mariadb: MariaDB Server: Arbitrary code execution via wsrep_notify_cmd (CVE-2026-49261)


Bug Fix(es) and Enhancement(s):  

  * Rebase MariaDB 10.11 to 10.11.18 in AlmaLinux10 (JIRA:AlmaLinux-183086)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487957" id="2487957"></bugzilla>
          <cve public="20260611" href="https://access.redhat.com/security/cve/CVE-2026-49261" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H">CVE-2026-49261</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093001" comment="mariadb is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136002" comment="mariadb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093002" comment="mariadb-backup is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136004" comment="mariadb-backup is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093003" comment="mariadb-client-utils is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136006" comment="mariadb-client-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093004" comment="mariadb-devel is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136008" comment="mariadb-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093005" comment="mariadb-embedded is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136010" comment="mariadb-embedded is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093006" comment="mariadb-embedded-devel is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136012" comment="mariadb-embedded-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093007" comment="mariadb-gssapi-server is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136014" comment="mariadb-gssapi-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093008" comment="mariadb-oqgraph-engine is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136016" comment="mariadb-oqgraph-engine is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093009" comment="mariadb-pam is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136018" comment="mariadb-pam is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093010" comment="mariadb-server is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136020" comment="mariadb-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093011" comment="mariadb-server-galera is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136022" comment="mariadb-server-galera is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093012" comment="mariadb-server-utils is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136024" comment="mariadb-server-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093013" comment="mariadb-test is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136026" comment="mariadb-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093014" comment="mariadb-common is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136028" comment="mariadb-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633093015" comment="mariadb-errmsg is earlier than 3:10.11.18-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260136030" comment="mariadb-errmsg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202630855" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:30855: git-lfs security update (Important)</title>
        <reference ref_id="CVE-2026-39821" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39821"/>
        <reference ref_id="RHSA-2026:30855" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:30855"/>
        <reference ref_id="ALSA-2026:30855" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-30855.html"/>
        <description>Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server.  

Security Fix(es):  

  * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480756" id="2480756"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39821" impact="Important" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2026-39821</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630855001" comment="git-lfs is earlier than 0:3.7.1-5.el10_2.5"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259063002" comment="git-lfs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202630845" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:30845: mod_md security update (Moderate)</title>
        <reference ref_id="CVE-2026-29168" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-29168"/>
        <reference ref_id="RHSA-2026:30845" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:30845"/>
        <reference ref_id="ALSA-2026:30845" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-30845.html"/>
        <description>This module manages common properties of domains for one or more virtual hosts. Specifically it can use the ACME protocol to automate certificate provisioning. Certificates will be configured for managed domains and their virtual hosts automatically, including at renewal.  

Security Fix(es):  

  * httpd: mod_md: unrestricted OCSP response leads to resource exhaustion (CVE-2026-29168)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2466753" id="2466753"></bugzilla>
          <cve public="20260505" href="https://access.redhat.com/security/cve/CVE-2026-29168" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-29168</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202630845001" comment="mod_md is earlier than 1:2.4.26-5.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202523738002" comment="mod_md is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633685" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33685: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-43279" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43279"/>
        <reference ref_id="CVE-2026-46090" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46090"/>
        <reference ref_id="CVE-2026-46176" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46176"/>
        <reference ref_id="CVE-2026-46189" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46189"/>
        <reference ref_id="RHSA-2026:33685" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33685"/>
        <reference ref_id="ALSA-2026:33685" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33685.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ALSA: usb-audio: Add sanity check for OOB writes at silencing (CVE-2026-43279)
  * kernel: ALSA: aloop: Fix peer runtime UAF during format-change stop (CVE-2026-46090)
  * kernel: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (CVE-2026-46189)
  * kernel: RDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init() (CVE-2026-46176)


Bug Fix(es) and Enhancement(s):  

  * CLONE - [AlmaLinux 10.2 Bug] qla2xxx flash image validation failure [almalinux-10.2.z] (JIRA:AlmaLinux-181887)
  * tegra-se fixes and updates [almalinux-10.2.z] (JIRA:AlmaLinux-182759)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-30"/>
          <updated date="2026-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467215" id="2467215"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481980" id="2481980"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482588" id="2482588"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482594" id="2482594"></bugzilla>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43279" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2026-43279</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-46090" impact="Important" cwe="CWE-364" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46090</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46176" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46176</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46189" impact="Important" cwe="CWE-1341" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46189</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685001" comment="kernel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685002" comment="kernel-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685003" comment="kernel-debug is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685004" comment="kernel-debug-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685011" comment="kernel-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685013" comment="kernel-headers is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685014" comment="kernel-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685015" comment="kernel-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685018" comment="kernel-rt is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685019" comment="kernel-rt-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685030" comment="kernel-tools is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685034" comment="perf is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685035" comment="python3-perf is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685036" comment="rtla is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685037" comment="rv is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685045" comment="kernel-64k is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685046" comment="kernel-64k-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685073" comment="libperf is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633685075" comment="kernel-doc is earlier than 0:6.12.0-211.29.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633092" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33092: glibc security, bug fix, and enhancement update (Moderate)</title>
        <reference ref_id="CVE-2026-5450" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5450"/>
        <reference ref_id="RHSA-2026:33092" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33092"/>
        <reference ref_id="ALSA-2026:33092" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33092.html"/>
        <description>The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.  

Security Fix(es):  

  * glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` format specifier and large width (CVE-2026-5450)


Bug Fix(es) and Enhancement(s):  

  * Backport Zen5 IFUNC changes to prefer AVX512/EVEX?512 string implementations on AlmaLinux 10 [almalinux-10] (JIRA:AlmaLinux-174869)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-29"/>
          <updated date="2026-06-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2459853" id="2459853"></bugzilla>
          <cve public="20260420" href="https://access.redhat.com/security/cve/CVE-2026-5450" impact="Moderate" cwe="CWE-131" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:H">CVE-2026-5450</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092001" comment="glibc-devel is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066008" comment="glibc-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092002" comment="glibc is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066002" comment="glibc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092003" comment="glibc-utils is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066090" comment="glibc-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092004" comment="glibc-langpack-xh is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066070" comment="glibc-langpack-xh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092005" comment="glibc-langpack-yi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066072" comment="glibc-langpack-yi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092006" comment="glibc-langpack-yo is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066074" comment="glibc-langpack-yo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092007" comment="glibc-langpack-yue is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066076" comment="glibc-langpack-yue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092008" comment="glibc-langpack-yuw is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066078" comment="glibc-langpack-yuw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092009" comment="glibc-langpack-zgh is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066080" comment="glibc-langpack-zgh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092010" comment="glibc-langpack-zh is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066082" comment="glibc-langpack-zh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092011" comment="glibc-langpack-zu is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066084" comment="glibc-langpack-zu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092012" comment="glibc-locale-source is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066086" comment="glibc-locale-source is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092013" comment="glibc-minimal-langpack is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066088" comment="glibc-minimal-langpack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092014" comment="libnsl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066092" comment="libnsl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092015" comment="glibc-benchtests is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066094" comment="glibc-benchtests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092016" comment="glibc-nss-devel is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066096" comment="glibc-nss-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092017" comment="glibc-static is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066436" comment="glibc-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092018" comment="nss_db is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066438" comment="nss_db is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092019" comment="nss_hesiod is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066440" comment="nss_hesiod is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092020" comment="glibc-all-langpacks is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066004" comment="glibc-all-langpacks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092021" comment="glibc-common is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066006" comment="glibc-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092022" comment="glibc-gconv-extra is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066010" comment="glibc-gconv-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092023" comment="glibc-langpack-aa is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066012" comment="glibc-langpack-aa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092024" comment="glibc-langpack-af is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066014" comment="glibc-langpack-af is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092025" comment="glibc-langpack-agr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066016" comment="glibc-langpack-agr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092026" comment="glibc-langpack-ak is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066018" comment="glibc-langpack-ak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092027" comment="glibc-langpack-am is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066020" comment="glibc-langpack-am is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092028" comment="glibc-langpack-an is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066022" comment="glibc-langpack-an is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092029" comment="glibc-langpack-anp is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066024" comment="glibc-langpack-anp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092030" comment="glibc-langpack-ar is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066026" comment="glibc-langpack-ar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092031" comment="glibc-langpack-as is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066028" comment="glibc-langpack-as is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092032" comment="glibc-langpack-ast is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066030" comment="glibc-langpack-ast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092033" comment="glibc-langpack-ayc is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066098" comment="glibc-langpack-ayc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092034" comment="glibc-langpack-az is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066100" comment="glibc-langpack-az is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092035" comment="glibc-langpack-be is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066102" comment="glibc-langpack-be is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092036" comment="glibc-langpack-bem is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066104" comment="glibc-langpack-bem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092037" comment="glibc-langpack-ber is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066106" comment="glibc-langpack-ber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092038" comment="glibc-langpack-bg is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066108" comment="glibc-langpack-bg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092039" comment="glibc-langpack-bhb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066110" comment="glibc-langpack-bhb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092040" comment="glibc-langpack-bho is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066112" comment="glibc-langpack-bho is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092041" comment="glibc-langpack-bi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066114" comment="glibc-langpack-bi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092042" comment="glibc-langpack-bn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066116" comment="glibc-langpack-bn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092043" comment="glibc-langpack-bo is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066118" comment="glibc-langpack-bo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092044" comment="glibc-langpack-br is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066120" comment="glibc-langpack-br is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092045" comment="glibc-langpack-brx is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066122" comment="glibc-langpack-brx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092046" comment="glibc-langpack-bs is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066124" comment="glibc-langpack-bs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092047" comment="glibc-langpack-byn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066126" comment="glibc-langpack-byn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092048" comment="glibc-langpack-ca is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066128" comment="glibc-langpack-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092049" comment="glibc-langpack-ce is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066130" comment="glibc-langpack-ce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092050" comment="glibc-langpack-chr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066132" comment="glibc-langpack-chr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092051" comment="glibc-langpack-ckb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066134" comment="glibc-langpack-ckb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092052" comment="glibc-langpack-cmn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066136" comment="glibc-langpack-cmn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092053" comment="glibc-langpack-crh is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066138" comment="glibc-langpack-crh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092054" comment="glibc-langpack-cs is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066140" comment="glibc-langpack-cs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092055" comment="glibc-langpack-csb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066142" comment="glibc-langpack-csb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092056" comment="glibc-langpack-cv is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066144" comment="glibc-langpack-cv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092057" comment="glibc-langpack-cy is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066146" comment="glibc-langpack-cy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092058" comment="glibc-langpack-da is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066148" comment="glibc-langpack-da is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092059" comment="glibc-langpack-de is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066150" comment="glibc-langpack-de is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092060" comment="glibc-langpack-doi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066152" comment="glibc-langpack-doi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092061" comment="glibc-langpack-dsb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066154" comment="glibc-langpack-dsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092062" comment="glibc-langpack-dv is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066156" comment="glibc-langpack-dv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092063" comment="glibc-langpack-dz is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066158" comment="glibc-langpack-dz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092064" comment="glibc-langpack-el is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066160" comment="glibc-langpack-el is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092065" comment="glibc-langpack-en is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066162" comment="glibc-langpack-en is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092066" comment="glibc-langpack-eo is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066164" comment="glibc-langpack-eo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092067" comment="glibc-langpack-es is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066166" comment="glibc-langpack-es is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092068" comment="glibc-langpack-et is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066168" comment="glibc-langpack-et is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092069" comment="glibc-langpack-eu is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066170" comment="glibc-langpack-eu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092070" comment="glibc-langpack-fa is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066172" comment="glibc-langpack-fa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092071" comment="glibc-langpack-ff is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066174" comment="glibc-langpack-ff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092072" comment="glibc-langpack-fi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066176" comment="glibc-langpack-fi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092073" comment="glibc-langpack-fil is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066178" comment="glibc-langpack-fil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092074" comment="glibc-langpack-fo is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066180" comment="glibc-langpack-fo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092075" comment="glibc-langpack-fr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066182" comment="glibc-langpack-fr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092076" comment="glibc-langpack-fur is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066184" comment="glibc-langpack-fur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092077" comment="glibc-langpack-fy is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066186" comment="glibc-langpack-fy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092078" comment="glibc-langpack-ga is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066188" comment="glibc-langpack-ga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092079" comment="glibc-langpack-gbm is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066190" comment="glibc-langpack-gbm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092080" comment="glibc-langpack-gd is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066192" comment="glibc-langpack-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092081" comment="glibc-langpack-gez is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066194" comment="glibc-langpack-gez is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092082" comment="glibc-langpack-gl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066196" comment="glibc-langpack-gl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092083" comment="glibc-langpack-gu is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066198" comment="glibc-langpack-gu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092084" comment="glibc-langpack-gv is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066200" comment="glibc-langpack-gv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092085" comment="glibc-langpack-ha is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066202" comment="glibc-langpack-ha is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092086" comment="glibc-langpack-hak is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066204" comment="glibc-langpack-hak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092087" comment="glibc-langpack-he is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066206" comment="glibc-langpack-he is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092088" comment="glibc-langpack-hi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066208" comment="glibc-langpack-hi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092089" comment="glibc-langpack-hif is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066210" comment="glibc-langpack-hif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092090" comment="glibc-langpack-hne is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066212" comment="glibc-langpack-hne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092091" comment="glibc-langpack-hr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066214" comment="glibc-langpack-hr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092092" comment="glibc-langpack-hsb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066216" comment="glibc-langpack-hsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092093" comment="glibc-langpack-ht is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066218" comment="glibc-langpack-ht is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092094" comment="glibc-langpack-hu is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066220" comment="glibc-langpack-hu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092095" comment="glibc-langpack-hy is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066222" comment="glibc-langpack-hy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092096" comment="glibc-langpack-ia is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066224" comment="glibc-langpack-ia is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092097" comment="glibc-langpack-id is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066226" comment="glibc-langpack-id is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092098" comment="glibc-langpack-ig is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066228" comment="glibc-langpack-ig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092099" comment="glibc-langpack-ik is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066230" comment="glibc-langpack-ik is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092100" comment="glibc-langpack-is is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066232" comment="glibc-langpack-is is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092101" comment="glibc-langpack-it is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066234" comment="glibc-langpack-it is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092102" comment="glibc-langpack-iu is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066236" comment="glibc-langpack-iu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092103" comment="glibc-langpack-ja is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066238" comment="glibc-langpack-ja is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092104" comment="glibc-langpack-ka is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066240" comment="glibc-langpack-ka is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092105" comment="glibc-langpack-kab is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066242" comment="glibc-langpack-kab is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092106" comment="glibc-langpack-kk is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066244" comment="glibc-langpack-kk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092107" comment="glibc-langpack-kl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066246" comment="glibc-langpack-kl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092108" comment="glibc-langpack-km is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066248" comment="glibc-langpack-km is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092109" comment="glibc-langpack-kn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066250" comment="glibc-langpack-kn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092110" comment="glibc-langpack-ko is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066252" comment="glibc-langpack-ko is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092111" comment="glibc-langpack-kok is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066254" comment="glibc-langpack-kok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092112" comment="glibc-langpack-ks is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066256" comment="glibc-langpack-ks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092113" comment="glibc-langpack-ku is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066258" comment="glibc-langpack-ku is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092114" comment="glibc-langpack-kv is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066260" comment="glibc-langpack-kv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092115" comment="glibc-langpack-kw is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066262" comment="glibc-langpack-kw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092116" comment="glibc-langpack-ky is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066264" comment="glibc-langpack-ky is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092117" comment="glibc-langpack-lb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066266" comment="glibc-langpack-lb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092118" comment="glibc-langpack-lg is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066268" comment="glibc-langpack-lg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092119" comment="glibc-langpack-li is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066270" comment="glibc-langpack-li is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092120" comment="glibc-langpack-lij is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066272" comment="glibc-langpack-lij is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092121" comment="glibc-langpack-ln is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066274" comment="glibc-langpack-ln is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092122" comment="glibc-langpack-lo is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066276" comment="glibc-langpack-lo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092123" comment="glibc-langpack-lt is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066278" comment="glibc-langpack-lt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092124" comment="glibc-langpack-lv is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066280" comment="glibc-langpack-lv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092125" comment="glibc-langpack-lzh is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066282" comment="glibc-langpack-lzh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092126" comment="glibc-langpack-mag is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066284" comment="glibc-langpack-mag is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092127" comment="glibc-langpack-mai is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066286" comment="glibc-langpack-mai is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092128" comment="glibc-langpack-mfe is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066288" comment="glibc-langpack-mfe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092129" comment="glibc-langpack-mg is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066290" comment="glibc-langpack-mg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092130" comment="glibc-langpack-mhr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066292" comment="glibc-langpack-mhr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092131" comment="glibc-langpack-mi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066294" comment="glibc-langpack-mi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092132" comment="glibc-langpack-miq is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066296" comment="glibc-langpack-miq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092133" comment="glibc-langpack-mjw is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066298" comment="glibc-langpack-mjw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092134" comment="glibc-langpack-mk is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066300" comment="glibc-langpack-mk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092135" comment="glibc-langpack-ml is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066302" comment="glibc-langpack-ml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092136" comment="glibc-langpack-mn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066304" comment="glibc-langpack-mn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092137" comment="glibc-langpack-mni is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066306" comment="glibc-langpack-mni is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092138" comment="glibc-langpack-mnw is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066308" comment="glibc-langpack-mnw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092139" comment="glibc-langpack-mr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066310" comment="glibc-langpack-mr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092140" comment="glibc-langpack-ms is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066312" comment="glibc-langpack-ms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092141" comment="glibc-langpack-mt is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066314" comment="glibc-langpack-mt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092142" comment="glibc-langpack-my is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066316" comment="glibc-langpack-my is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092143" comment="glibc-langpack-nan is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066318" comment="glibc-langpack-nan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092144" comment="glibc-langpack-nb is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066320" comment="glibc-langpack-nb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092145" comment="glibc-langpack-nds is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066322" comment="glibc-langpack-nds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092146" comment="glibc-langpack-ne is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066324" comment="glibc-langpack-ne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092147" comment="glibc-langpack-nhn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066326" comment="glibc-langpack-nhn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092148" comment="glibc-langpack-niu is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066328" comment="glibc-langpack-niu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092149" comment="glibc-langpack-nl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066330" comment="glibc-langpack-nl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092150" comment="glibc-langpack-nn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066332" comment="glibc-langpack-nn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092151" comment="glibc-langpack-nr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066334" comment="glibc-langpack-nr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092152" comment="glibc-langpack-nso is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066336" comment="glibc-langpack-nso is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092153" comment="glibc-langpack-oc is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066338" comment="glibc-langpack-oc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092154" comment="glibc-langpack-om is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066340" comment="glibc-langpack-om is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092155" comment="glibc-langpack-or is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066342" comment="glibc-langpack-or is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092156" comment="glibc-langpack-os is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066344" comment="glibc-langpack-os is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092157" comment="glibc-langpack-pa is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066346" comment="glibc-langpack-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092158" comment="glibc-langpack-pap is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066348" comment="glibc-langpack-pap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092159" comment="glibc-langpack-pl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066350" comment="glibc-langpack-pl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092160" comment="glibc-langpack-ps is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066352" comment="glibc-langpack-ps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092161" comment="glibc-langpack-pt is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066354" comment="glibc-langpack-pt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092162" comment="glibc-langpack-quz is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066356" comment="glibc-langpack-quz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092163" comment="glibc-langpack-raj is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066358" comment="glibc-langpack-raj is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092164" comment="glibc-langpack-rif is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066360" comment="glibc-langpack-rif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092165" comment="glibc-langpack-ro is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066362" comment="glibc-langpack-ro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092166" comment="glibc-langpack-ru is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066364" comment="glibc-langpack-ru is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092167" comment="glibc-langpack-rw is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066366" comment="glibc-langpack-rw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092168" comment="glibc-langpack-sa is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066368" comment="glibc-langpack-sa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092169" comment="glibc-langpack-sah is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066370" comment="glibc-langpack-sah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092170" comment="glibc-langpack-sat is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066372" comment="glibc-langpack-sat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092171" comment="glibc-langpack-sc is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066374" comment="glibc-langpack-sc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092172" comment="glibc-langpack-sd is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066376" comment="glibc-langpack-sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092173" comment="glibc-langpack-se is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066378" comment="glibc-langpack-se is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092174" comment="glibc-langpack-sgs is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066380" comment="glibc-langpack-sgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092175" comment="glibc-langpack-shn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066382" comment="glibc-langpack-shn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092176" comment="glibc-langpack-shs is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066384" comment="glibc-langpack-shs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092177" comment="glibc-langpack-si is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066386" comment="glibc-langpack-si is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092178" comment="glibc-langpack-sid is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066388" comment="glibc-langpack-sid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092179" comment="glibc-langpack-sk is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066390" comment="glibc-langpack-sk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092180" comment="glibc-langpack-sl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066392" comment="glibc-langpack-sl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092181" comment="glibc-langpack-sm is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066394" comment="glibc-langpack-sm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092182" comment="glibc-langpack-so is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066396" comment="glibc-langpack-so is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092183" comment="glibc-langpack-sq is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066398" comment="glibc-langpack-sq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092184" comment="glibc-langpack-sr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066400" comment="glibc-langpack-sr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092185" comment="glibc-langpack-ss is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066402" comment="glibc-langpack-ss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092186" comment="glibc-langpack-ssy is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066404" comment="glibc-langpack-ssy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092187" comment="glibc-langpack-st is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066406" comment="glibc-langpack-st is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092188" comment="glibc-langpack-su is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066408" comment="glibc-langpack-su is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092189" comment="glibc-langpack-sv is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066410" comment="glibc-langpack-sv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092190" comment="glibc-langpack-sw is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066412" comment="glibc-langpack-sw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092191" comment="glibc-langpack-syr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066414" comment="glibc-langpack-syr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092192" comment="glibc-langpack-szl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066416" comment="glibc-langpack-szl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092193" comment="glibc-langpack-ta is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066418" comment="glibc-langpack-ta is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092194" comment="glibc-langpack-tcy is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066420" comment="glibc-langpack-tcy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092195" comment="glibc-langpack-te is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066422" comment="glibc-langpack-te is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092196" comment="glibc-langpack-tg is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066424" comment="glibc-langpack-tg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092197" comment="glibc-langpack-th is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066426" comment="glibc-langpack-th is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092198" comment="glibc-langpack-the is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066428" comment="glibc-langpack-the is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092199" comment="glibc-langpack-ti is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066430" comment="glibc-langpack-ti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092200" comment="glibc-langpack-tig is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066432" comment="glibc-langpack-tig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092201" comment="glibc-langpack-tk is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066434" comment="glibc-langpack-tk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092202" comment="glibc-langpack-tl is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066032" comment="glibc-langpack-tl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092203" comment="glibc-langpack-tn is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066034" comment="glibc-langpack-tn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092204" comment="glibc-langpack-to is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066036" comment="glibc-langpack-to is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092205" comment="glibc-langpack-tok is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066038" comment="glibc-langpack-tok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092206" comment="glibc-langpack-tpi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066040" comment="glibc-langpack-tpi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092207" comment="glibc-langpack-tr is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066042" comment="glibc-langpack-tr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092208" comment="glibc-langpack-ts is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066044" comment="glibc-langpack-ts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092209" comment="glibc-langpack-tt is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066046" comment="glibc-langpack-tt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092210" comment="glibc-langpack-ug is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066048" comment="glibc-langpack-ug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092211" comment="glibc-langpack-uk is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066050" comment="glibc-langpack-uk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092212" comment="glibc-langpack-unm is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066052" comment="glibc-langpack-unm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092213" comment="glibc-langpack-ur is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066054" comment="glibc-langpack-ur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092214" comment="glibc-langpack-uz is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066056" comment="glibc-langpack-uz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092215" comment="glibc-langpack-ve is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066058" comment="glibc-langpack-ve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092216" comment="glibc-langpack-vi is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066060" comment="glibc-langpack-vi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092217" comment="glibc-langpack-wa is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066062" comment="glibc-langpack-wa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092218" comment="glibc-langpack-wae is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066064" comment="glibc-langpack-wae is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092219" comment="glibc-langpack-wal is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066066" comment="glibc-langpack-wal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092220" comment="glibc-langpack-wo is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066068" comment="glibc-langpack-wo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633092221" comment="glibc-doc is earlier than 0:2.39-126.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066442" comment="glibc-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202634109" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:34109: httpd security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2024-42516" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2024-42516"/>
        <reference ref_id="CVE-2026-29169" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-29169"/>
        <reference ref_id="CVE-2026-34355" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34355"/>
        <reference ref_id="CVE-2026-34356" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34356"/>
        <reference ref_id="CVE-2026-42536" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42536"/>
        <reference ref_id="CVE-2026-44185" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44185"/>
        <reference ref_id="CVE-2026-44631" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44631"/>
        <reference ref_id="RHSA-2026:34109" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:34109"/>
        <reference ref_id="ALSA-2026:34109" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-34109.html"/>
        <description>The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server.  

Security Fix(es):  

  * httpd: incomplete fix for CVE-2023-38709 (CVE-2024-42516)
  * httpd: NULL pointer dereference via specially crafted request (CVE-2026-29169)
  * httpd: Apache HTTP Server: Heap-based Buffer Overflow via malicious backend servers (CVE-2026-34356)
  * httpd: Apache HTTP Server: Buffer Over-read via outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
  * httpd: Apache HTTP Server: Denial of Service via crafted regular expressions (CVE-2026-44631)
  * httpd: Apache HTTP Server: Heap-based Buffer Overflow via untrusted content in mod_xml2enc (CVE-2026-42536)
  * httpd: Apache HTTP Server: Buffer overflow in mod_proxy_html allows security bypass (CVE-2026-34355)


Bug Fix(es) and Enhancement(s):  

  * address Moderate severity issues from httpd 2.4.68 [almalinux-10.2.z] (JIRA:AlmaLinux-184518)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-01"/>
          <updated date="2026-07-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2374549" id="2374549"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2465296" id="2465296"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486395" id="2486395"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486397" id="2486397"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486399" id="2486399"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486411" id="2486411"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486414" id="2486414"></bugzilla>
          <cve public="20250714" href="https://access.redhat.com/security/cve/CVE-2024-42516" impact="Moderate" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N">CVE-2024-42516</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-29169" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-29169</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-34355" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34355</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-34356" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-34356</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-42536" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42536</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-44185" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-44185</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-44631" impact="Moderate" cwe="CWE-124" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H">CVE-2026-44631</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109001" comment="httpd is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095010" comment="httpd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109002" comment="httpd-core is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095012" comment="httpd-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109003" comment="httpd-devel is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095014" comment="httpd-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109004" comment="httpd-tools is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095016" comment="httpd-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109005" comment="mod_ldap is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095018" comment="mod_ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109006" comment="mod_lua is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095002" comment="mod_lua is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109007" comment="mod_proxy_html is earlier than 1:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095004" comment="mod_proxy_html is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109008" comment="mod_session is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095006" comment="mod_session is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109009" comment="mod_ssl is earlier than 1:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095008" comment="mod_ssl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109010" comment="httpd-filesystem is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095020" comment="httpd-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202634109011" comment="httpd-manual is earlier than 0:2.4.63-13.el10_2.4"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202515095022" comment="httpd-manual is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633565" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33565: ruby security update (Important)</title>
        <reference ref_id="CVE-2026-42245" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42245"/>
        <reference ref_id="CVE-2026-42246" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42246"/>
        <reference ref_id="CVE-2026-42258" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42258"/>
        <reference ref_id="RHSA-2026:33565" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33565"/>
        <reference ref_id="ALSA-2026:33565" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33565.html"/>
        <description>Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.  

Security Fix(es):  

  * ruby: net-imap: Net::IMAP: Denial of Service via crafted IMAP responses (CVE-2026-42245)
  * ruby/net-imap: ruby: Net::IMAP: IMAP Command Injection via Symbol Arguments (CVE-2026-42258)
  * net-imap: ruby: Net::IMAP: Information disclosure via man-in-the-middle attack bypassing TLS (CVE-2026-42246)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-30"/>
          <updated date="2026-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2468495" id="2468495"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468498" id="2468498"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468499" id="2468499"></bugzilla>
          <cve public="20260509" href="https://access.redhat.com/security/cve/CVE-2026-42245" impact="Moderate" cwe="CWE-606" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H">CVE-2026-42245</cve>
          <cve public="20260509" href="https://access.redhat.com/security/cve/CVE-2026-42246" impact="Important" cwe="CWE-325" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-42246</cve>
          <cve public="20260509" href="https://access.redhat.com/security/cve/CVE-2026-42258" impact="Important" cwe="CWE-93" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:N">CVE-2026-42258</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565001" comment="ruby is earlier than 0:3.3.10-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131002" comment="ruby is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565002" comment="ruby-bundled-gems is earlier than 0:3.3.10-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131004" comment="ruby-bundled-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565003" comment="ruby-devel is earlier than 0:3.3.10-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131006" comment="ruby-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565004" comment="ruby-libs is earlier than 0:3.3.10-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131008" comment="ruby-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565005" comment="rubygem-bigdecimal is earlier than 0:3.1.5-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131010" comment="rubygem-bigdecimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565006" comment="rubygem-io-console is earlier than 0:0.7.1-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131012" comment="rubygem-io-console is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565007" comment="rubygem-json is earlier than 0:2.7.2-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131014" comment="rubygem-json is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565008" comment="rubygem-psych is earlier than 0:5.1.2-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131016" comment="rubygem-psych is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565009" comment="rubygem-racc is earlier than 0:1.7.3-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131018" comment="rubygem-racc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565010" comment="rubygem-rbs is earlier than 0:3.4.0-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131020" comment="rubygem-rbs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565011" comment="rubygems is earlier than 0:3.5.22-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131044" comment="rubygems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565012" comment="ruby-default-gems is earlier than 0:3.3.10-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131022" comment="ruby-default-gems is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565013" comment="rubygem-bundler is earlier than 0:2.5.22-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131024" comment="rubygem-bundler is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565014" comment="rubygem-irb is earlier than 0:1.13.1-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131026" comment="rubygem-irb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565015" comment="rubygem-minitest is earlier than 0:5.20.0-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131028" comment="rubygem-minitest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565016" comment="rubygem-power_assert is earlier than 0:2.0.3-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131030" comment="rubygem-power_assert is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565017" comment="rubygem-rake is earlier than 0:13.1.0-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131032" comment="rubygem-rake is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565018" comment="rubygem-rdoc is earlier than 0:6.6.3.1-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131034" comment="rubygem-rdoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565019" comment="rubygem-rexml is earlier than 0:3.4.4-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131036" comment="rubygem-rexml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565020" comment="rubygem-rss is earlier than 0:0.3.1-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131038" comment="rubygem-rss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565021" comment="rubygem-test-unit is earlier than 0:3.6.1-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131040" comment="rubygem-test-unit is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565022" comment="rubygem-typeprof is earlier than 0:0.21.9-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131042" comment="rubygem-typeprof is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565023" comment="rubygems-devel is earlier than 0:3.5.22-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131046" comment="rubygems-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633565024" comment="ruby-doc is earlier than 0:3.3.10-13.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258131048" comment="ruby-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202633502" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:33502: giflib security update (Important)</title>
        <reference ref_id="CVE-2026-26740" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-26740"/>
        <reference ref_id="RHSA-2026:33502" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:33502"/>
        <reference ref_id="ALSA-2026:33502" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-33502.html"/>
        <description>giflib is a library for reading and writing gif images.  

Security Fix(es):  

  * giflib: giflib: Denial of Service via buffer overflow in EGifGCBToExtension (CVE-2026-26740)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-30"/>
          <updated date="2026-06-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2448747" id="2448747"></bugzilla>
          <cve public="20260318" href="https://access.redhat.com/security/cve/CVE-2026-26740" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-26740</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633502001" comment="giflib-devel is earlier than 0:5.2.1-25.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268858004" comment="giflib-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202633502002" comment="giflib is earlier than 0:5.2.1-25.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20268858002" comment="giflib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202634355" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:34355: mod_http2 security, bug fix, and enhancement update (Moderate)</title>
        <reference ref_id="CVE-2026-43951" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43951"/>
        <reference ref_id="CVE-2026-48913" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48913"/>
        <reference ref_id="RHSA-2026:34355" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:34355"/>
        <reference ref_id="ALSA-2026:34355" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-34355.html"/>
        <description>The mod_h2 Apache httpd module implements the HTTP2 protocol (h2+h2c) on top of libnghttp2 for httpd 2.4 servers.  

Security Fix(es):  

  * httpd: mod_http2: Apache HTTP Server mod_http2: Use After Free vulnerability allows arbitrary code execution or denial of service. (CVE-2026-48913)
  * httpd: Apache HTTP Server: Out-of-bounds Read in mod_headers and mod_mime (CVE-2026-43951)


Bug Fix(es) and Enhancement(s):  

  * address CVE-2026-43951 and CVE-2026-48913 in mod_http2 (JIRA:AlmaLinux-188008)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-01"/>
          <updated date="2026-07-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2486405" id="2486405"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486415" id="2486415"></bugzilla>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-43951" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-43951</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-48913" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-48913</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202634355001" comment="mod_http2 is earlier than 0:2.0.29-4.el10_2.2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202514625002" comment="mod_http2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202642096" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:42096: c-ares security update (Important)</title>
        <reference ref_id="CVE-2026-33630" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33630"/>
        <reference ref_id="RHSA-2026:42096" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:42096"/>
        <reference ref_id="ALSA-2026:42096" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-42096.html"/>
        <description>The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API.  

Security Fix(es):  

  * c-ares: c-ares: Use-after-free / double-free in query-completion handling (CVE-2026-33630)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2497686" id="2497686"></bugzilla>
          <cve public="20260707" href="https://access.redhat.com/security/cve/CVE-2026-33630" impact="Important" cwe="CWE-416" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33630</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642096001" comment="c-ares is earlier than 0:1.34.6-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642096002" comment="c-ares is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642096003" comment="c-ares-devel is earlier than 0:1.34.6-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642096004" comment="c-ares-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202642063" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:42063: glib2 security update (Important)</title>
        <reference ref_id="CVE-2026-58016" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-58016"/>
        <reference ref_id="RHSA-2026:42063" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:42063"/>
        <reference ref_id="ALSA-2026:42063" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-42063.html"/>
        <description>GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures.  

Security Fix(es):  

  * glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml" (CVE-2026-58016)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2492257" id="2492257"></bugzilla>
          <cve public="20260408" href="https://access.redhat.com/security/cve/CVE-2026-58016" impact="Important" cwe="CWE-191" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-58016</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642063001" comment="glib2 is earlier than 0:2.80.4-12.el10_2.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975002" comment="glib2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642063002" comment="glib2-devel is earlier than 0:2.80.4-12.el10_2.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975004" comment="glib2-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642063003" comment="glib2-tests is earlier than 0:2.80.4-12.el10_2.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975006" comment="glib2-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642063004" comment="glib2-doc is earlier than 0:2.80.4-12.el10_2.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975008" comment="glib2-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642063005" comment="glib2-static is earlier than 0:2.80.4-12.el10_2.14"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260975010" comment="glib2-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636673" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36673: gstreamer1-plugins-ugly-free security update (Moderate)</title>
        <reference ref_id="CVE-2026-53703" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53703"/>
        <reference ref_id="RHSA-2026:36673" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36673"/>
        <reference ref_id="ALSA-2026:36673" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36673.html"/>
        <description>GStreamer is a streaming media framework, based on graphs of elements which operate on media data. This package contains plug-ins whose license is not fully compatible with LGPL.  

Security Fix(es):  

  * gstreamer1-plugins-ugly-free: GStreamer: Out-of-bounds read in RealMedia demuxer audio stream header parser (CVE-2026-53703)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487613" id="2487613"></bugzilla>
          <cve public="20260612" href="https://access.redhat.com/security/cve/CVE-2026-53703" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2026-53703</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202636673001" comment="gstreamer1-plugins-ugly-free is earlier than 0:1.26.7-2.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20266259014" comment="gstreamer1-plugins-ugly-free is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202641988" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:41988: dovecot security update (Important)</title>
        <reference ref_id="CVE-2026-42006" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42006"/>
        <reference ref_id="RHSA-2026:41988" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:41988"/>
        <reference ref_id="ALSA-2026:41988" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-41988.html"/>
        <description>Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages.   

Security Fix(es):  

  * dovecot: Dovecot: Denial of Service via excessive IMAP bracing (CVE-2026-42006)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476476" id="2476476"></bugzilla>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-42006" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42006</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641988001" comment="dovecot is earlier than 1:2.3.21-19.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498002" comment="dovecot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641988002" comment="dovecot-mysql is earlier than 1:2.3.21-19.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498004" comment="dovecot-mysql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641988003" comment="dovecot-pgsql is earlier than 1:2.3.21-19.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498006" comment="dovecot-pgsql is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641988004" comment="dovecot-pigeonhole is earlier than 1:2.3.21-19.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498008" comment="dovecot-pigeonhole is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641988005" comment="dovecot-devel is earlier than 1:2.3.21-19.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202613498010" comment="dovecot-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636196" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36196: 389-ds-base security update (Important)</title>
        <reference ref_id="CVE-2026-11610" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-11610"/>
        <reference ref_id="CVE-2026-11774" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-11774"/>
        <reference ref_id="RHSA-2026:36196" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36196"/>
        <reference ref_id="ALSA-2026:36196" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36196.html"/>
        <description>389 Directory Server is an LDAP version 3 (LDAPv3) compliant server. The base packages include the Lightweight Directory Access Protocol (LDAP) server and command-line utilities for server administration.  

Security Fix(es):  

  * 389-ds-base: 389-ds-base: Heap buffer overflow in sasl_io_recv() via padded SASL UNBIND (CVE-2026-11610)
  * 389-ds-base: 389-ds-base: integer overflow in SASL packet length bypasses size limit leading to heap buffer overflow (CVE-2026-11774)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2484414" id="2484414"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2484916" id="2484916"></bugzilla>
          <cve public="20260707" href="https://access.redhat.com/security/cve/CVE-2026-11610" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-11610</cve>
          <cve public="20260604" href="https://access.redhat.com/security/cve/CVE-2026-11774" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2026-11774</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636196001" comment="389-ds-base is earlier than 0:3.2.0-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208002" comment="389-ds-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636196002" comment="389-ds-base-libs is earlier than 0:3.2.0-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208004" comment="389-ds-base-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636196003" comment="389-ds-base-bdb is earlier than 0:3.2.0-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208008" comment="389-ds-base-bdb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636196004" comment="389-ds-base-devel is earlier than 0:3.2.0-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208010" comment="389-ds-base-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636196005" comment="389-ds-base-snmp is earlier than 0:3.2.0-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208006" comment="389-ds-base-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636196006" comment="python3-lib389 is earlier than 0:3.2.0-8.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20263208012" comment="python3-lib389 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636203" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36203: freerdp security update (Important)</title>
        <reference ref_id="CVE-2026-40033" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-40033"/>
        <reference ref_id="CVE-2026-44420" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44420"/>
        <reference ref_id="CVE-2026-44421" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44421"/>
        <reference ref_id="CVE-2026-44422" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44422"/>
        <reference ref_id="CVE-2026-45700" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-45700"/>
        <reference ref_id="RHSA-2026:36203" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36203"/>
        <reference ref_id="ALSA-2026:36203" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36203.html"/>
        <description>FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.  

Security Fix(es):  

  * freerdp: FreeRDP: Remote code execution via heap-buffer-overflow in gdi_CacheToSurface (CVE-2026-40033)
  * freerdp: FreeRDP: Arbitrary code execution or denial of service via heap use-after-free in RDPEAR NDR parser (CVE-2026-44422)
  * freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution (CVE-2026-45700)
  * freerdp: FreeRDP: Arbitrary code execution via crafted RDPGFX PDUs (CVE-2026-44421)
  * freerdp: FreeRDP: Arbitrary code execution and denial of service via heap-buffer-overflow (CVE-2026-44420)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2481473" id="2481473"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2483467" id="2483467"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2483470" id="2483470"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2483471" id="2483471"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2483480" id="2483480"></bugzilla>
          <cve public="20260526" href="https://access.redhat.com/security/cve/CVE-2026-40033" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-40033</cve>
          <cve public="20260529" href="https://access.redhat.com/security/cve/CVE-2026-44420" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-44420</cve>
          <cve public="20260529" href="https://access.redhat.com/security/cve/CVE-2026-44421" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-44421</cve>
          <cve public="20260529" href="https://access.redhat.com/security/cve/CVE-2026-44422" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-44422</cve>
          <cve public="20260529" href="https://access.redhat.com/security/cve/CVE-2026-45700" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-45700</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636203001" comment="freerdp is earlier than 2:3.10.3-12.el10_2.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307002" comment="freerdp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636203002" comment="freerdp-libs is earlier than 2:3.10.3-12.el10_2.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307004" comment="freerdp-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636203003" comment="libwinpr is earlier than 2:3.10.3-12.el10_2.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307006" comment="libwinpr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636203004" comment="freerdp-devel is earlier than 2:3.10.3-12.el10_2.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307008" comment="freerdp-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636203005" comment="freerdp-server is earlier than 2:3.10.3-12.el10_2.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307010" comment="freerdp-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636203006" comment="libwinpr-devel is earlier than 2:3.10.3-12.el10_2.6"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259307012" comment="libwinpr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202635841" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:35841: nodejs24 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-6733" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6733"/>
        <reference ref_id="CVE-2026-6734" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6734"/>
        <reference ref_id="CVE-2026-9678" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9678"/>
        <reference ref_id="CVE-2026-9697" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9697"/>
        <reference ref_id="CVE-2026-11525" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-11525"/>
        <reference ref_id="CVE-2026-12151" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12151"/>
        <reference ref_id="CVE-2026-42338" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42338"/>
        <reference ref_id="CVE-2026-48615" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48615"/>
        <reference ref_id="CVE-2026-48618" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48618"/>
        <reference ref_id="CVE-2026-48619" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48619"/>
        <reference ref_id="CVE-2026-48928" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48928"/>
        <reference ref_id="CVE-2026-48930" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48930"/>
        <reference ref_id="CVE-2026-48933" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48933"/>
        <reference ref_id="CVE-2026-48934" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48934"/>
        <reference ref_id="CVE-2026-48935" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48935"/>
        <reference ref_id="RHSA-2026:35841" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:35841"/>
        <reference ref_id="ALSA-2026:35841" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-35841.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime for easily building fast, scalable network applications. Node.js uses an event-driven, non-blocking I/O model that makes it lightweight and efficient, perfect for data-intensive real-time applications that run across distributed devices.  

Security Fix(es):  

  * ip-address: ip-address: Cross-site scripting via improper HTML escaping of untrusted input (CVE-2026-42338)
  * undici: undici: Denial of Service due to unbounded memory growth via WebSocket frames (CVE-2026-12151)
  * undici: Undici: Information disclosure due to improper cache-control header parsing (CVE-2026-9678)
  * undici: Undici: Response queue poisoning on reused keep-alive sockets can lead to incorrect response delivery. (CVE-2026-6733)
  * undici: undici: Weakening of cookie SameSite policy due to incorrect parsing of Set-Cookie header (CVE-2026-11525)
  * undici: undici: Man-in-the-Middle attack via ignored TLS options with SOCKS5 proxy (CVE-2026-9697)
  * undici: undici: Information disclosure and data integrity issues due to incorrect Socks5ProxyAgent connection routing (CVE-2026-6734)
  * nodejs: Node.js: Denial of Service via unlimited HTTP/2 ORIGIN frames (CVE-2026-48619)
  * nodejs: Node.js: Silent authority rebinding due to embedded-nul hostnames in TLS handling (CVE-2026-48930)
  * nodejs: Node.js: Unauthorized file metadata modification (CVE-2026-48935)
  * nodejs: Node.js WebCrypto: Denial of Service via large input to subtle.encrypt() (CVE-2026-48933)
  * nodejs: Node.js: Certification validation bypass in TLS host verification (CVE-2026-48934)
  * Node.js: Node.js: Trust-policy bypass due to hostname matching inconsistency (CVE-2026-48928)
  * nodejs: Node.js: Information disclosure of proxy credentials via proxy tunnel error handling (CVE-2026-48615)
  * nodejs: Node.js: Authentication bypass due to TLS hostname handling and unicode dot separator mismatch (CVE-2026-48618)


Bug Fix(es) and Enhancement(s):  

  * nodejs24: Rebase to the latest Node.js 24 release [almalinux-10.2.z] (JIRA:AlmaLinux-186582)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-06"/>
          <updated date="2026-07-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476810" id="2476810"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489980" id="2489980"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490000" id="2490000"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490006" id="2490006"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490008" id="2490008"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490018" id="2490018"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490024" id="2490024"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493325" id="2493325"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493326" id="2493326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493329" id="2493329"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493331" id="2493331"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493332" id="2493332"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493333" id="2493333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493335" id="2493335"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493337" id="2493337"></bugzilla>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-6733" impact="Low" cwe="CWE-940" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-6733</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-6734" impact="Important" cwe="CWE-940" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-6734</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-9678" impact="Moderate" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-9678</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-9697" impact="Important" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-9697</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-11525" impact="Low" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-11525</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-12151" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-12151</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-42338" impact="Important" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2026-42338</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48615" impact="Moderate" cwe="CWE-209" cvss3="CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-48615</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48618" impact="Important" cwe="CWE-289" cvss3="CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N">CVE-2026-48618</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48619" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-48619</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48928" impact="Moderate" cwe="CWE-289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2026-48928</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48930" impact="Moderate" cwe="CWE-170" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-48930</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48933" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-48933</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48934" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVE-2026-48934</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48935" impact="Low" cwe="CWE-279" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N">CVE-2026-48935</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635841001" comment="nodejs24 is earlier than 1:24.18.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842002" comment="nodejs24 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635841002" comment="nodejs24-devel is earlier than 1:24.18.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842004" comment="nodejs24-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635841003" comment="nodejs24-full-i18n is earlier than 1:24.18.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842006" comment="nodejs24-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635841004" comment="nodejs24-libs is earlier than 1:24.18.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842008" comment="nodejs24-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635841005" comment="nodejs24-docs is earlier than 1:24.18.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842010" comment="nodejs24-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635841006" comment="nodejs24-npm is earlier than 1:11.16.0-1.24.18.0.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261842012" comment="nodejs24-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202635842" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:35842: nodejs22 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-6733" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6733"/>
        <reference ref_id="CVE-2026-9678" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-9678"/>
        <reference ref_id="CVE-2026-11525" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-11525"/>
        <reference ref_id="CVE-2026-12151" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12151"/>
        <reference ref_id="CVE-2026-42338" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42338"/>
        <reference ref_id="CVE-2026-48615" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48615"/>
        <reference ref_id="CVE-2026-48618" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48618"/>
        <reference ref_id="CVE-2026-48619" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48619"/>
        <reference ref_id="CVE-2026-48928" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48928"/>
        <reference ref_id="CVE-2026-48930" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48930"/>
        <reference ref_id="CVE-2026-48933" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48933"/>
        <reference ref_id="CVE-2026-48934" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48934"/>
        <reference ref_id="CVE-2026-48935" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-48935"/>
        <reference ref_id="RHSA-2026:35842" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:35842"/>
        <reference ref_id="ALSA-2026:35842" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-35842.html"/>
        <description>Node.js is a platform built on Chrome's JavaScript runtime \ for easily building fast, scalable network applications. \ Node.js uses an event-driven, non-blocking I/O model that \ makes it lightweight and efficient, perfect for data-intensive \ real-time applications that run across distributed devices.  

Security Fix(es):  

  * ip-address: ip-address: Cross-site scripting via improper HTML escaping of untrusted input (CVE-2026-42338)
  * undici: undici: Denial of Service due to unbounded memory growth via WebSocket frames (CVE-2026-12151)
  * undici: Undici: Information disclosure due to improper cache-control header parsing (CVE-2026-9678)
  * undici: Undici: Response queue poisoning on reused keep-alive sockets can lead to incorrect response delivery. (CVE-2026-6733)
  * undici: undici: Weakening of cookie SameSite policy due to incorrect parsing of Set-Cookie header (CVE-2026-11525)
  * nodejs: Node.js: Denial of Service via unlimited HTTP/2 ORIGIN frames (CVE-2026-48619)
  * nodejs: Node.js: Silent authority rebinding due to embedded-nul hostnames in TLS handling (CVE-2026-48930)
  * nodejs: Node.js: Unauthorized file metadata modification (CVE-2026-48935)
  * nodejs: Node.js WebCrypto: Denial of Service via large input to subtle.encrypt() (CVE-2026-48933)
  * nodejs: Node.js: Certification validation bypass in TLS host verification (CVE-2026-48934)
  * Node.js: Node.js: Trust-policy bypass due to hostname matching inconsistency (CVE-2026-48928)
  * nodejs: Node.js: Information disclosure of proxy credentials via proxy tunnel error handling (CVE-2026-48615)
  * nodejs: Node.js: Authentication bypass due to TLS hostname handling and unicode dot separator mismatch (CVE-2026-48618)


Bug Fix(es) and Enhancement(s):  

  * nodejs22: Rebase to the latest Node.js 22 release [almalinux-10.2.z] (JIRA:AlmaLinux-186623)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-06"/>
          <updated date="2026-07-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2476810" id="2476810"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2489980" id="2489980"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490000" id="2490000"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490006" id="2490006"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490008" id="2490008"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493325" id="2493325"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493326" id="2493326"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493329" id="2493329"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493331" id="2493331"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493332" id="2493332"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493333" id="2493333"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493335" id="2493335"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493337" id="2493337"></bugzilla>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-6733" impact="Low" cwe="CWE-940" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-6733</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-9678" impact="Moderate" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-9678</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-11525" impact="Low" cwe="CWE-1286" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-11525</cve>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-12151" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-12151</cve>
          <cve public="20260512" href="https://access.redhat.com/security/cve/CVE-2026-42338" impact="Important" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2026-42338</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48615" impact="Moderate" cwe="CWE-209" cvss3="CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-48615</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48618" impact="Important" cwe="CWE-289" cvss3="CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N">CVE-2026-48618</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48619" impact="Moderate" cwe="CWE-770" cvss3="CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-48619</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48928" impact="Moderate" cwe="CWE-289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N">CVE-2026-48928</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48930" impact="Moderate" cwe="CWE-170" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L">CVE-2026-48930</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48933" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-48933</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48934" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N">CVE-2026-48934</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-48935" impact="Low" cwe="CWE-279" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N">CVE-2026-48935</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635842001" comment="nodejs is earlier than 1:22.23.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493002" comment="nodejs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635842002" comment="nodejs-devel is earlier than 1:22.23.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493004" comment="nodejs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635842003" comment="nodejs-full-i18n is earlier than 1:22.23.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493006" comment="nodejs-full-i18n is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635842004" comment="nodejs-libs is earlier than 1:22.23.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493008" comment="nodejs-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635842005" comment="nodejs-npm is earlier than 1:10.9.8-1.22.23.1.2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493010" comment="nodejs-npm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635842006" comment="nodejs-docs is earlier than 1:22.23.1-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20258493012" comment="nodejs-docs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639573" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39573: yggdrasil security update (Important)</title>
        <reference ref_id="CVE-2026-27145" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27145"/>
        <reference ref_id="CVE-2026-33811" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33811"/>
        <reference ref_id="CVE-2026-39821" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39821"/>
        <reference ref_id="RHSA-2026:39573" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39573"/>
        <reference ref_id="ALSA-2026:39573" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39573.html"/>
        <description>yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.  

Security Fix(es):  

  * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)
  * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)
  * crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467822" id="2467822"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480756" id="2480756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2484207" id="2484207"></bugzilla>
          <cve public="20260602" href="https://access.redhat.com/security/cve/CVE-2026-27145" impact="Important" cwe="CWE-606" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27145</cve>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-33811" impact="Important" cwe="CWE-1341" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33811</cve>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39821" impact="Important" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2026-39821</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639573001" comment="yggdrasil is earlier than 0:0.4.9.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592002" comment="yggdrasil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639573002" comment="yggdrasil-devel is earlier than 0:0.4.9.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257592004" comment="yggdrasil-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639547" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39547: perl-XML-LibXML security update (Important)</title>
        <reference ref_id="CVE-2026-8177" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8177"/>
        <reference ref_id="RHSA-2026:39547" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39547"/>
        <reference ref_id="ALSA-2026:39547" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39547.html"/>
        <description>This module implements a Perl interface to the GNOME libxml2 library which provides interfaces for parsing and manipulating XML files. This module allows Perl programmers to make use of the highly capable validating XML parser and the high performance DOM implementation.  

Security Fix(es):  

  * perl-XML-LibXML: XML::LibXML: Denial of Service via truncated UTF-8 in XML node names (CVE-2026-8177)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-14"/>
          <updated date="2026-07-14"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2468684" id="2468684"></bugzilla>
          <cve public="20260510" href="https://access.redhat.com/security/cve/CVE-2026-8177" impact="Important" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-8177</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202639547001" comment="perl-XML-LibXML is earlier than 1:2.0210-4.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202639547002" comment="perl-XML-LibXML is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202634357" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:34357: opentelemetry-collector security update (Important)</title>
        <reference ref_id="CVE-2026-25681" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-25681"/>
        <reference ref_id="CVE-2026-27145" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27145"/>
        <reference ref_id="CVE-2026-33811" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33811"/>
        <reference ref_id="CVE-2026-39821" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39821"/>
        <reference ref_id="CVE-2026-42151" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42151"/>
        <reference ref_id="CVE-2026-42154" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42154"/>
        <reference ref_id="RHSA-2026:34357" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:34357"/>
        <reference ref_id="ALSA-2026:34357" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-34357.html"/>
        <description>Collector with the supported components for a AlmaLinux build of OpenTelemetry  

Security Fix(es):  

  * github.com/prometheus/prometheus: Prometheus: Denial of Service via uncontrolled memory allocation in remote read endpoint (CVE-2026-42154)
  * github.com/prometheus/prometheus: Prometheus: Information disclosure of Azure OAuth client secret via config API (CVE-2026-42151)
  * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)
  * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)
  * golang.org/x/net/html: golang.org/x/net/html: Arbitrary code execution via Cross-Site Scripting (CVE-2026-25681)
  * crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-01"/>
          <updated date="2026-07-01"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2466505" id="2466505"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2466507" id="2466507"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467822" id="2467822"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480756" id="2480756"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480761" id="2480761"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2484207" id="2484207"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-25681" impact="Important" cwe="CWE-79" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N">CVE-2026-25681</cve>
          <cve public="20260602" href="https://access.redhat.com/security/cve/CVE-2026-27145" impact="Important" cwe="CWE-606" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27145</cve>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-33811" impact="Important" cwe="CWE-1341" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33811</cve>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39821" impact="Important" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2026-39821</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-42151" impact="Important" cwe="CWE-256" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N">CVE-2026-42151</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-42154" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42154</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202634357001" comment="opentelemetry-collector is earlier than 0:0.152.1-1.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202512850002" comment="opentelemetry-collector is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636675" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36675: gstreamer1-plugins-good security update (Important)</title>
        <reference ref_id="CVE-2026-53705" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53705"/>
        <reference ref_id="RHSA-2026:36675" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36675"/>
        <reference ref_id="ALSA-2026:36675" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36675.html"/>
        <description>GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-good packages contain a collection of well-supported plug-ins of good quality and under the LGPL license.  

Security Fix(es):  

  * gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow (CVE-2026-53705)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2487615" id="2487615"></bugzilla>
          <cve public="20260612" href="https://access.redhat.com/security/cve/CVE-2026-53705" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H">CVE-2026-53705</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636675001" comment="gstreamer1-plugins-good is earlier than 0:1.26.7-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259006" comment="gstreamer1-plugins-good is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636675002" comment="gstreamer1-plugins-good-gtk is earlier than 0:1.26.7-2.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20266259012" comment="gstreamer1-plugins-good-gtk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202639976" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:39976: hplip security update (Important)</title>
        <reference ref_id="CVE-2026-14544" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-14544"/>
        <reference ref_id="RHSA-2026:39976" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:39976"/>
        <reference ref_id="ALSA-2026:39976" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-39976.html"/>
        <description>The hplip packages contain the Hewlett-Packard Linux Imaging and Printing Project (HPLIP), which provides drivers for Hewlett-Packard printers and multi-function peripherals.  

Security Fix(es):  

  * HPLIP: Incomplete Fix for CVE-2026-8631 (CVE-2026-14544)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-15"/>
          <updated date="2026-07-15"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2496772" id="2496772"></bugzilla>
          <cve public="20260703" href="https://access.redhat.com/security/cve/CVE-2026-14544" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-14544</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976001" comment="hplip is earlier than 0:3.23.12-10.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976002" comment="hplip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976003" comment="hplip-common is earlier than 0:3.23.12-10.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976004" comment="hplip-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976005" comment="hplip-libs is earlier than 0:3.23.12-10.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976006" comment="hplip-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976007" comment="libsane-hpaio is earlier than 0:3.23.12-10.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202639976008" comment="libsane-hpaio is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202642739" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:42739: acl security update (Important)</title>
        <reference ref_id="CVE-2026-54369" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-54369"/>
        <reference ref_id="CVE-2026-54370" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-54370"/>
        <reference ref_id="RHSA-2026:42739" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:42739"/>
        <reference ref_id="ALSA-2026:42739" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-42739.html"/>
        <description>Access Control Lists (ACLs) are used to define fine-grained discretionary access rights for files and directories. The acl packages contain the getfacl and setfacl utilities needed for manipulating access control lists.  

Security Fix(es):  

  * acl: Symlink traversal privilege escalation via libacl functions (CVE-2026-54369)
  * acl: TOCTOU Symlink Traversal via getfacl/setfacl (CVE-2026-54370)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-21"/>
          <updated date="2026-07-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2490277" id="2490277"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2490279" id="2490279"></bugzilla>
          <cve public="20260629" href="https://access.redhat.com/security/cve/CVE-2026-54369" impact="Important" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2026-54369</cve>
          <cve public="20260629" href="https://access.redhat.com/security/cve/CVE-2026-54370" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N">CVE-2026-54370</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642739001" comment="acl is earlier than 0:2.4.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642739002" comment="acl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642739003" comment="libacl is earlier than 0:2.4.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642739004" comment="libacl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642739005" comment="libacl-devel is earlier than 0:2.4.0-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642739006" comment="libacl-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636541" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36541: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-43074" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43074"/>
        <reference ref_id="CVE-2026-43276" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43276"/>
        <reference ref_id="CVE-2026-43341" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-43341"/>
        <reference ref_id="CVE-2026-46155" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46155"/>
        <reference ref_id="CVE-2026-46242" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46242"/>
        <reference ref_id="CVE-2026-46259" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46259"/>
        <reference ref_id="RHSA-2026:36541" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36541"/>
        <reference ref_id="ALSA-2026:36541" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36541.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: eventpoll: defer struct eventpoll free to RCU grace period (CVE-2026-43074)
  * kernel: net: mana: Fix double destroy_workqueue on service rescan PCI path (CVE-2026-43276)
  * kernel: net/ipv6: ioam6: prevent schema length wraparound in trace fill (CVE-2026-43341)
  * kernel: smb/client: fix out-of-bounds read in smb2_compound_op() (CVE-2026-46155)
  * kernel: eventpoll: fix ep_remove struct eventpoll / struct file UAF (CVE-2026-46242)
  * kernel: procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CVE-2026-46259)


Bug Fix(es) and Enhancement(s):  

  * CNB103: net: page_pool: avoid false positive warning if NAPI was never added [almalinux-10.2.z] (JIRA:AlmaLinux-162140)
  * [AlmaLinux 10] Bonding reports unknown speed/duplex for tg3 interface [almalinux-10.2.z] (JIRA:AlmaLinux-182770)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-08"/>
          <updated date="2026-07-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467019" id="2467019"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467113" id="2467113"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2468097" id="2468097"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482660" id="2482660"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2483519" id="2483519"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2484477" id="2484477"></bugzilla>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43074" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H">CVE-2026-43074</cve>
          <cve public="20260506" href="https://access.redhat.com/security/cve/CVE-2026-43276" impact="Moderate" cwe="CWE-1341" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-43276</cve>
          <cve public="20260508" href="https://access.redhat.com/security/cve/CVE-2026-43341" impact="Moderate" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H">CVE-2026-43341</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46155" impact="Moderate" cwe="CWE-130" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-46155</cve>
          <cve public="20260530" href="https://access.redhat.com/security/cve/CVE-2026-46242" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46242</cve>
          <cve public="20260603" href="https://access.redhat.com/security/cve/CVE-2026-46259" impact="Moderate" cwe="CWE-820" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-46259</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541001" comment="kernel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541002" comment="kernel-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541003" comment="kernel-debug is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541004" comment="kernel-debug-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541011" comment="kernel-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541013" comment="kernel-headers is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541014" comment="kernel-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541015" comment="kernel-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541018" comment="kernel-rt is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541019" comment="kernel-rt-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541030" comment="kernel-tools is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541034" comment="perf is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541035" comment="python3-perf is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541036" comment="rtla is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541037" comment="rv is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541045" comment="kernel-64k is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541046" comment="kernel-64k-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541073" comment="libperf is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636541075" comment="kernel-doc is earlier than 0:6.12.0-211.31.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636193" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36193: python3.14-pip security update (Important)</title>
        <reference ref_id="CVE-2026-8643" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8643"/>
        <reference ref_id="RHSA-2026:36193" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36193"/>
        <reference ref_id="ALSA-2026:36193" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36193.html"/>
        <description>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.  

Security Fix(es):  

  * python-pip: Path traversal via malicious entry point name in pip wheel installation allows arbitrary file overwrite (CVE-2026-8643)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2460927" id="2460927"></bugzilla>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-8643" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H">CVE-2026-8643</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636193001" comment="python3.14-pip is earlier than 0:25.2-3.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636193002" comment="python3.14-pip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636193003" comment="python3.14-pip-wheel is earlier than 0:25.2-3.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636193004" comment="python3.14-pip-wheel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636364" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36364: nginx security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-42055" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42055"/>
        <reference ref_id="RHSA-2026:36364" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36364"/>
        <reference ref_id="ALSA-2026:36364" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36364.html"/>
        <description>nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.   

Security Fix(es):  

  * nginx: NGINX: Arbitrary code execution or Denial of Service via heap-based buffer overflow with crafted HTTP/2 headers (CVE-2026-42055)


Bug Fix(es) and Enhancement(s):  

  * "HTTP/2 bomb" nginx fix breaks module ABI causing crashes [almalinux-10.2.z] (JIRA:AlmaLinux-191778)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2489866" id="2489866"></bugzilla>
          <cve public="20260617" href="https://access.redhat.com/security/cve/CVE-2026-42055" impact="Important" cwe="CWE-131" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-42055</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364001" comment="nginx is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705002" comment="nginx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364002" comment="nginx-core is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705004" comment="nginx-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364003" comment="nginx-mod-http-image-filter is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705006" comment="nginx-mod-http-image-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364004" comment="nginx-mod-http-perl is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705008" comment="nginx-mod-http-perl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364005" comment="nginx-mod-http-xslt-filter is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705010" comment="nginx-mod-http-xslt-filter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364006" comment="nginx-mod-mail is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705012" comment="nginx-mod-mail is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364007" comment="nginx-mod-stream is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705014" comment="nginx-mod-stream is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364008" comment="nginx-mod-devel is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705016" comment="nginx-mod-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364009" comment="nginx-all-modules is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705018" comment="nginx-all-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636364010" comment="nginx-filesystem is earlier than 2:1.26.3-6.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20264705020" comment="nginx-filesystem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202642694" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:42694: glibc security update (Moderate)</title>
        <reference ref_id="CVE-2026-5435" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5435"/>
        <reference ref_id="CVE-2026-5928" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5928"/>
        <reference ref_id="CVE-2026-6238" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6238"/>
        <reference ref_id="RHSA-2026:42694" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:42694"/>
        <reference ref_id="ALSA-2026:42694" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-42694.html"/>
        <description>The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.  

Security Fix(es):  

  * glibc: glibc: Information disclosure or denial of service via ungetwc function with specific wide character encodings (CVE-2026-5928)
  * glibc: glibc: Out-of-bounds write via TSIG record processing (CVE-2026-5435)
  * glibc: glibc: Application crash or uninitialized memory read via crafted DNS response (CVE-2026-6238)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Moderate</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-21"/>
          <updated date="2026-07-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2459854" id="2459854"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2463465" id="2463465"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2463539" id="2463539"></bugzilla>
          <cve public="20260428" href="https://access.redhat.com/security/cve/CVE-2026-5435" impact="Moderate" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2026-5435</cve>
          <cve public="20260420" href="https://access.redhat.com/security/cve/CVE-2026-5928" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:H">CVE-2026-5928</cve>
          <cve public="20260428" href="https://access.redhat.com/security/cve/CVE-2026-6238" impact="Moderate" cwe="CWE-1284" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-6238</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694001" comment="glibc-utils is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066090" comment="glibc-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694002" comment="glibc-langpack-yo is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066074" comment="glibc-langpack-yo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694003" comment="glibc-langpack-yue is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066076" comment="glibc-langpack-yue is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694004" comment="glibc-langpack-yuw is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066078" comment="glibc-langpack-yuw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694005" comment="glibc-langpack-zgh is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066080" comment="glibc-langpack-zgh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694006" comment="glibc-langpack-zh is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066082" comment="glibc-langpack-zh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694007" comment="glibc-langpack-zu is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066084" comment="glibc-langpack-zu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694008" comment="glibc-locale-source is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066086" comment="glibc-locale-source is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694009" comment="glibc-minimal-langpack is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066088" comment="glibc-minimal-langpack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694010" comment="libnsl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066092" comment="libnsl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694011" comment="glibc-benchtests is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066094" comment="glibc-benchtests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694012" comment="glibc-nss-devel is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066096" comment="glibc-nss-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694013" comment="glibc-static is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066436" comment="glibc-static is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694014" comment="nss_db is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066438" comment="nss_db is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694015" comment="nss_hesiod is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066440" comment="nss_hesiod is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694016" comment="glibc is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066002" comment="glibc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694017" comment="glibc-all-langpacks is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066004" comment="glibc-all-langpacks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694018" comment="glibc-common is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066006" comment="glibc-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694019" comment="glibc-devel is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066008" comment="glibc-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694020" comment="glibc-gconv-extra is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066010" comment="glibc-gconv-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694021" comment="glibc-langpack-aa is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066012" comment="glibc-langpack-aa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694022" comment="glibc-langpack-af is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066014" comment="glibc-langpack-af is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694023" comment="glibc-langpack-agr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066016" comment="glibc-langpack-agr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694024" comment="glibc-langpack-ak is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066018" comment="glibc-langpack-ak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694025" comment="glibc-langpack-am is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066020" comment="glibc-langpack-am is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694026" comment="glibc-langpack-an is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066022" comment="glibc-langpack-an is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694027" comment="glibc-langpack-anp is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066024" comment="glibc-langpack-anp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694028" comment="glibc-langpack-ar is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066026" comment="glibc-langpack-ar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694029" comment="glibc-langpack-as is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066028" comment="glibc-langpack-as is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694030" comment="glibc-langpack-ast is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066030" comment="glibc-langpack-ast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694031" comment="glibc-langpack-ayc is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066098" comment="glibc-langpack-ayc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694032" comment="glibc-langpack-az is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066100" comment="glibc-langpack-az is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694033" comment="glibc-langpack-be is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066102" comment="glibc-langpack-be is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694034" comment="glibc-langpack-bem is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066104" comment="glibc-langpack-bem is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694035" comment="glibc-langpack-ber is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066106" comment="glibc-langpack-ber is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694036" comment="glibc-langpack-bg is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066108" comment="glibc-langpack-bg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694037" comment="glibc-langpack-bhb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066110" comment="glibc-langpack-bhb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694038" comment="glibc-langpack-bho is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066112" comment="glibc-langpack-bho is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694039" comment="glibc-langpack-bi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066114" comment="glibc-langpack-bi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694040" comment="glibc-langpack-bn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066116" comment="glibc-langpack-bn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694041" comment="glibc-langpack-bo is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066118" comment="glibc-langpack-bo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694042" comment="glibc-langpack-br is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066120" comment="glibc-langpack-br is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694043" comment="glibc-langpack-brx is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066122" comment="glibc-langpack-brx is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694044" comment="glibc-langpack-bs is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066124" comment="glibc-langpack-bs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694045" comment="glibc-langpack-byn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066126" comment="glibc-langpack-byn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694046" comment="glibc-langpack-ca is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066128" comment="glibc-langpack-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694047" comment="glibc-langpack-ce is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066130" comment="glibc-langpack-ce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694048" comment="glibc-langpack-chr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066132" comment="glibc-langpack-chr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694049" comment="glibc-langpack-ckb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066134" comment="glibc-langpack-ckb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694050" comment="glibc-langpack-cmn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066136" comment="glibc-langpack-cmn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694051" comment="glibc-langpack-crh is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066138" comment="glibc-langpack-crh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694052" comment="glibc-langpack-cs is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066140" comment="glibc-langpack-cs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694053" comment="glibc-langpack-csb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066142" comment="glibc-langpack-csb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694054" comment="glibc-langpack-cv is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066144" comment="glibc-langpack-cv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694055" comment="glibc-langpack-cy is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066146" comment="glibc-langpack-cy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694056" comment="glibc-langpack-da is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066148" comment="glibc-langpack-da is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694057" comment="glibc-langpack-de is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066150" comment="glibc-langpack-de is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694058" comment="glibc-langpack-doi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066152" comment="glibc-langpack-doi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694059" comment="glibc-langpack-dsb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066154" comment="glibc-langpack-dsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694060" comment="glibc-langpack-dv is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066156" comment="glibc-langpack-dv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694061" comment="glibc-langpack-dz is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066158" comment="glibc-langpack-dz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694062" comment="glibc-langpack-el is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066160" comment="glibc-langpack-el is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694063" comment="glibc-langpack-en is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066162" comment="glibc-langpack-en is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694064" comment="glibc-langpack-eo is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066164" comment="glibc-langpack-eo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694065" comment="glibc-langpack-es is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066166" comment="glibc-langpack-es is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694066" comment="glibc-langpack-et is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066168" comment="glibc-langpack-et is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694067" comment="glibc-langpack-eu is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066170" comment="glibc-langpack-eu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694068" comment="glibc-langpack-fa is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066172" comment="glibc-langpack-fa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694069" comment="glibc-langpack-ff is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066174" comment="glibc-langpack-ff is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694070" comment="glibc-langpack-fi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066176" comment="glibc-langpack-fi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694071" comment="glibc-langpack-fil is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066178" comment="glibc-langpack-fil is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694072" comment="glibc-langpack-fo is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066180" comment="glibc-langpack-fo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694073" comment="glibc-langpack-fr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066182" comment="glibc-langpack-fr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694074" comment="glibc-langpack-fur is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066184" comment="glibc-langpack-fur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694075" comment="glibc-langpack-fy is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066186" comment="glibc-langpack-fy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694076" comment="glibc-langpack-ga is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066188" comment="glibc-langpack-ga is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694077" comment="glibc-langpack-gbm is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066190" comment="glibc-langpack-gbm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694078" comment="glibc-langpack-gd is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066192" comment="glibc-langpack-gd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694079" comment="glibc-langpack-gez is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066194" comment="glibc-langpack-gez is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694080" comment="glibc-langpack-gl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066196" comment="glibc-langpack-gl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694081" comment="glibc-langpack-gu is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066198" comment="glibc-langpack-gu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694082" comment="glibc-langpack-gv is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066200" comment="glibc-langpack-gv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694083" comment="glibc-langpack-ha is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066202" comment="glibc-langpack-ha is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694084" comment="glibc-langpack-hak is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066204" comment="glibc-langpack-hak is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694085" comment="glibc-langpack-he is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066206" comment="glibc-langpack-he is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694086" comment="glibc-langpack-hi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066208" comment="glibc-langpack-hi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694087" comment="glibc-langpack-hif is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066210" comment="glibc-langpack-hif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694088" comment="glibc-langpack-hne is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066212" comment="glibc-langpack-hne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694089" comment="glibc-langpack-hr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066214" comment="glibc-langpack-hr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694090" comment="glibc-langpack-hsb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066216" comment="glibc-langpack-hsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694091" comment="glibc-langpack-ht is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066218" comment="glibc-langpack-ht is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694092" comment="glibc-langpack-hu is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066220" comment="glibc-langpack-hu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694093" comment="glibc-langpack-hy is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066222" comment="glibc-langpack-hy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694094" comment="glibc-langpack-ia is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066224" comment="glibc-langpack-ia is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694095" comment="glibc-langpack-id is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066226" comment="glibc-langpack-id is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694096" comment="glibc-langpack-ig is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066228" comment="glibc-langpack-ig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694097" comment="glibc-langpack-ik is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066230" comment="glibc-langpack-ik is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694098" comment="glibc-langpack-is is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066232" comment="glibc-langpack-is is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694099" comment="glibc-langpack-it is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066234" comment="glibc-langpack-it is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694100" comment="glibc-langpack-iu is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066236" comment="glibc-langpack-iu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694101" comment="glibc-langpack-ja is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066238" comment="glibc-langpack-ja is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694102" comment="glibc-langpack-ka is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066240" comment="glibc-langpack-ka is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694103" comment="glibc-langpack-kab is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066242" comment="glibc-langpack-kab is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694104" comment="glibc-langpack-kk is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066244" comment="glibc-langpack-kk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694105" comment="glibc-langpack-kl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066246" comment="glibc-langpack-kl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694106" comment="glibc-langpack-km is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066248" comment="glibc-langpack-km is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694107" comment="glibc-langpack-kn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066250" comment="glibc-langpack-kn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694108" comment="glibc-langpack-ko is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066252" comment="glibc-langpack-ko is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694109" comment="glibc-langpack-kok is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066254" comment="glibc-langpack-kok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694110" comment="glibc-langpack-ks is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066256" comment="glibc-langpack-ks is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694111" comment="glibc-langpack-ku is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066258" comment="glibc-langpack-ku is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694112" comment="glibc-langpack-kv is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066260" comment="glibc-langpack-kv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694113" comment="glibc-langpack-kw is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066262" comment="glibc-langpack-kw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694114" comment="glibc-langpack-ky is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066264" comment="glibc-langpack-ky is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694115" comment="glibc-langpack-lb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066266" comment="glibc-langpack-lb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694116" comment="glibc-langpack-lg is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066268" comment="glibc-langpack-lg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694117" comment="glibc-langpack-li is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066270" comment="glibc-langpack-li is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694118" comment="glibc-langpack-lij is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066272" comment="glibc-langpack-lij is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694119" comment="glibc-langpack-ln is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066274" comment="glibc-langpack-ln is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694120" comment="glibc-langpack-lo is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066276" comment="glibc-langpack-lo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694121" comment="glibc-langpack-lt is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066278" comment="glibc-langpack-lt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694122" comment="glibc-langpack-lv is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066280" comment="glibc-langpack-lv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694123" comment="glibc-langpack-lzh is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066282" comment="glibc-langpack-lzh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694124" comment="glibc-langpack-mag is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066284" comment="glibc-langpack-mag is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694125" comment="glibc-langpack-mai is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066286" comment="glibc-langpack-mai is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694126" comment="glibc-langpack-mfe is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066288" comment="glibc-langpack-mfe is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694127" comment="glibc-langpack-mg is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066290" comment="glibc-langpack-mg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694128" comment="glibc-langpack-mhr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066292" comment="glibc-langpack-mhr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694129" comment="glibc-langpack-mi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066294" comment="glibc-langpack-mi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694130" comment="glibc-langpack-miq is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066296" comment="glibc-langpack-miq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694131" comment="glibc-langpack-mjw is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066298" comment="glibc-langpack-mjw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694132" comment="glibc-langpack-mk is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066300" comment="glibc-langpack-mk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694133" comment="glibc-langpack-ml is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066302" comment="glibc-langpack-ml is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694134" comment="glibc-langpack-mn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066304" comment="glibc-langpack-mn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694135" comment="glibc-langpack-mni is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066306" comment="glibc-langpack-mni is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694136" comment="glibc-langpack-mnw is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066308" comment="glibc-langpack-mnw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694137" comment="glibc-langpack-mr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066310" comment="glibc-langpack-mr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694138" comment="glibc-langpack-ms is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066312" comment="glibc-langpack-ms is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694139" comment="glibc-langpack-mt is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066314" comment="glibc-langpack-mt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694140" comment="glibc-langpack-my is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066316" comment="glibc-langpack-my is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694141" comment="glibc-langpack-nan is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066318" comment="glibc-langpack-nan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694142" comment="glibc-langpack-nb is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066320" comment="glibc-langpack-nb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694143" comment="glibc-langpack-nds is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066322" comment="glibc-langpack-nds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694144" comment="glibc-langpack-ne is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066324" comment="glibc-langpack-ne is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694145" comment="glibc-langpack-nhn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066326" comment="glibc-langpack-nhn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694146" comment="glibc-langpack-niu is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066328" comment="glibc-langpack-niu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694147" comment="glibc-langpack-nl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066330" comment="glibc-langpack-nl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694148" comment="glibc-langpack-nn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066332" comment="glibc-langpack-nn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694149" comment="glibc-langpack-nr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066334" comment="glibc-langpack-nr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694150" comment="glibc-langpack-nso is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066336" comment="glibc-langpack-nso is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694151" comment="glibc-langpack-oc is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066338" comment="glibc-langpack-oc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694152" comment="glibc-langpack-om is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066340" comment="glibc-langpack-om is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694153" comment="glibc-langpack-or is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066342" comment="glibc-langpack-or is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694154" comment="glibc-langpack-os is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066344" comment="glibc-langpack-os is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694155" comment="glibc-langpack-pa is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066346" comment="glibc-langpack-pa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694156" comment="glibc-langpack-pap is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066348" comment="glibc-langpack-pap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694157" comment="glibc-langpack-pl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066350" comment="glibc-langpack-pl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694158" comment="glibc-langpack-ps is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066352" comment="glibc-langpack-ps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694159" comment="glibc-langpack-pt is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066354" comment="glibc-langpack-pt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694160" comment="glibc-langpack-quz is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066356" comment="glibc-langpack-quz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694161" comment="glibc-langpack-raj is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066358" comment="glibc-langpack-raj is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694162" comment="glibc-langpack-rif is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066360" comment="glibc-langpack-rif is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694163" comment="glibc-langpack-ro is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066362" comment="glibc-langpack-ro is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694164" comment="glibc-langpack-ru is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066364" comment="glibc-langpack-ru is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694165" comment="glibc-langpack-rw is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066366" comment="glibc-langpack-rw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694166" comment="glibc-langpack-sa is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066368" comment="glibc-langpack-sa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694167" comment="glibc-langpack-sah is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066370" comment="glibc-langpack-sah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694168" comment="glibc-langpack-sat is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066372" comment="glibc-langpack-sat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694169" comment="glibc-langpack-sc is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066374" comment="glibc-langpack-sc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694170" comment="glibc-langpack-sd is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066376" comment="glibc-langpack-sd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694171" comment="glibc-langpack-se is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066378" comment="glibc-langpack-se is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694172" comment="glibc-langpack-sgs is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066380" comment="glibc-langpack-sgs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694173" comment="glibc-langpack-shn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066382" comment="glibc-langpack-shn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694174" comment="glibc-langpack-shs is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066384" comment="glibc-langpack-shs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694175" comment="glibc-langpack-si is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066386" comment="glibc-langpack-si is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694176" comment="glibc-langpack-sid is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066388" comment="glibc-langpack-sid is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694177" comment="glibc-langpack-sk is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066390" comment="glibc-langpack-sk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694178" comment="glibc-langpack-sl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066392" comment="glibc-langpack-sl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694179" comment="glibc-langpack-sm is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066394" comment="glibc-langpack-sm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694180" comment="glibc-langpack-so is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066396" comment="glibc-langpack-so is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694181" comment="glibc-langpack-sq is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066398" comment="glibc-langpack-sq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694182" comment="glibc-langpack-sr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066400" comment="glibc-langpack-sr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694183" comment="glibc-langpack-ss is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066402" comment="glibc-langpack-ss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694184" comment="glibc-langpack-ssy is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066404" comment="glibc-langpack-ssy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694185" comment="glibc-langpack-st is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066406" comment="glibc-langpack-st is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694186" comment="glibc-langpack-su is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066408" comment="glibc-langpack-su is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694187" comment="glibc-langpack-sv is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066410" comment="glibc-langpack-sv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694188" comment="glibc-langpack-sw is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066412" comment="glibc-langpack-sw is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694189" comment="glibc-langpack-syr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066414" comment="glibc-langpack-syr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694190" comment="glibc-langpack-szl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066416" comment="glibc-langpack-szl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694191" comment="glibc-langpack-ta is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066418" comment="glibc-langpack-ta is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694192" comment="glibc-langpack-tcy is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066420" comment="glibc-langpack-tcy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694193" comment="glibc-langpack-te is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066422" comment="glibc-langpack-te is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694194" comment="glibc-langpack-tg is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066424" comment="glibc-langpack-tg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694195" comment="glibc-langpack-th is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066426" comment="glibc-langpack-th is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694196" comment="glibc-langpack-the is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066428" comment="glibc-langpack-the is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694197" comment="glibc-langpack-ti is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066430" comment="glibc-langpack-ti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694198" comment="glibc-langpack-tig is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066432" comment="glibc-langpack-tig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694199" comment="glibc-langpack-tk is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066434" comment="glibc-langpack-tk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694200" comment="glibc-langpack-tl is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066032" comment="glibc-langpack-tl is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694201" comment="glibc-langpack-tn is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066034" comment="glibc-langpack-tn is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694202" comment="glibc-langpack-to is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066036" comment="glibc-langpack-to is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694203" comment="glibc-langpack-tok is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066038" comment="glibc-langpack-tok is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694204" comment="glibc-langpack-tpi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066040" comment="glibc-langpack-tpi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694205" comment="glibc-langpack-tr is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066042" comment="glibc-langpack-tr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694206" comment="glibc-langpack-ts is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066044" comment="glibc-langpack-ts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694207" comment="glibc-langpack-tt is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066046" comment="glibc-langpack-tt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694208" comment="glibc-langpack-ug is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066048" comment="glibc-langpack-ug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694209" comment="glibc-langpack-uk is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066050" comment="glibc-langpack-uk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694210" comment="glibc-langpack-unm is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066052" comment="glibc-langpack-unm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694211" comment="glibc-langpack-ur is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066054" comment="glibc-langpack-ur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694212" comment="glibc-langpack-uz is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066056" comment="glibc-langpack-uz is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694213" comment="glibc-langpack-ve is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066058" comment="glibc-langpack-ve is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694214" comment="glibc-langpack-vi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066060" comment="glibc-langpack-vi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694215" comment="glibc-langpack-wa is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066062" comment="glibc-langpack-wa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694216" comment="glibc-langpack-wae is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066064" comment="glibc-langpack-wae is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694217" comment="glibc-langpack-wal is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066066" comment="glibc-langpack-wal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694218" comment="glibc-langpack-wo is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066068" comment="glibc-langpack-wo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694219" comment="glibc-langpack-xh is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066070" comment="glibc-langpack-xh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694220" comment="glibc-langpack-yi is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066072" comment="glibc-langpack-yi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642694221" comment="glibc-doc is earlier than 0:2.39-128.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202511066442" comment="glibc-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202643400" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:43400: dogtag-pki security update (Important)</title>
        <reference ref_id="CVE-2026-54512" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-54512"/>
        <reference ref_id="CVE-2026-54513" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-54513"/>
        <reference ref_id="RHSA-2026:43400" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:43400"/>
        <reference ref_id="ALSA-2026:43400" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-43400.html"/>
        <description>IdM PKI is an enterprise software system designed to manage enterprise Public Key Infrastructure deployments. IdM PKI consists of the following components:   

  * Certificate Authority (CA)
  * Key Recovery Authority (KRA)
  * Online Certificate Status Protocol (OCSP) Manager
  * Token Key Service (TKS)
  * Token Processing Service (TPS)
  * Automatic Certificate Management Environment (ACME) Responder
  * Enrollment over Secure Transport (EST) Responder


Security Fix(es):  

  * jackson-databind: Jackson-databind: Security bypass allows arbitrary code execution (CVE-2026-54513)
  * jackson-databind: jackson-databind: Arbitrary code execution via PolymorphicTypeValidator bypass (CVE-2026-54512)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-22"/>
          <updated date="2026-07-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2492010" id="2492010"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492015" id="2492015"></bugzilla>
          <cve public="20260623" href="https://access.redhat.com/security/cve/CVE-2026-54512" impact="Important" cwe="CWE-502" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-54512</cve>
          <cve public="20260623" href="https://access.redhat.com/security/cve/CVE-2026-54513" impact="Important" cwe="CWE-184" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-54513</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400001" comment="idm-pki-tools is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400002" comment="idm-pki-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400003" comment="idm-pki-acme is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400004" comment="idm-pki-acme is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400005" comment="idm-pki-base is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400006" comment="idm-pki-base is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400007" comment="idm-pki-ca is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400008" comment="idm-pki-ca is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400009" comment="idm-pki-java is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400010" comment="idm-pki-java is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400011" comment="idm-pki-kra is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400012" comment="idm-pki-kra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400013" comment="idm-pki-server is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400014" comment="idm-pki-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400015" comment="python3-idm-pki is earlier than 0:11.9.0-4.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643400016" comment="python3-idm-pki is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636199" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36199: buildah security update (Important)</title>
        <reference ref_id="CVE-2026-39829" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39829"/>
        <reference ref_id="CVE-2026-39830" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39830"/>
        <reference ref_id="CVE-2026-39832" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39832"/>
        <reference ref_id="CVE-2026-39835" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39835"/>
        <reference ref_id="RHSA-2026:36199" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36199"/>
        <reference ref_id="ALSA-2026:36199" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36199.html"/>
        <description>The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.   

Security Fix(es):  

  * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate (CVE-2026-39835)
  * golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via crafted public key with excessive parameters (CVE-2026-39829)
  * golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via resource leak from unsolicited SSH responses (CVE-2026-39830)
  * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to improper handling of key restrictions (CVE-2026-39832)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480680" id="2480680"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480681" id="2480681"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480684" id="2480684"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2480685" id="2480685"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39829" impact="Important" cwe="CWE-1284" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-39829</cve>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39830" impact="Important" cwe="CWE-772" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-39830</cve>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39832" impact="Important" cwe="CWE-281" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N">CVE-2026-39832</cve>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39835" impact="Important" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-39835</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636199001" comment="buildah is earlier than 2:1.43.1-3.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148002" comment="buildah is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202636199002" comment="buildah-tests is earlier than 2:1.43.1-3.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259148004" comment="buildah-tests is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202620613" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:20613: gnutls security update (Important)</title>
        <reference ref_id="CVE-2026-3832" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3832"/>
        <reference ref_id="CVE-2026-3833" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-3833"/>
        <reference ref_id="CVE-2026-5260" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5260"/>
        <reference ref_id="CVE-2026-5419" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5419"/>
        <reference ref_id="CVE-2026-33845" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33845"/>
        <reference ref_id="CVE-2026-33846" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33846"/>
        <reference ref_id="CVE-2026-42009" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42009"/>
        <reference ref_id="CVE-2026-42010" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42010"/>
        <reference ref_id="CVE-2026-42011" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42011"/>
        <reference ref_id="CVE-2026-42012" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42012"/>
        <reference ref_id="CVE-2026-42013" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42013"/>
        <reference ref_id="CVE-2026-42014" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42014"/>
        <reference ref_id="CVE-2026-42015" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-42015"/>
        <reference ref_id="RHSA-2026:20613" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:20613"/>
        <reference ref_id="ALSA-2026:20613" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-20613.html"/>
        <description>The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library,  
which implements cryptographic algorithms and protocols such as SSL, TLS, and  
DTLS.  

Security Fix(es):  

  * gnutls: Fix qsort comparator in DTLS reassembly (CVE-2026-42009)
  * gnutls: Fix crashing on an underflow with a DTLS datagram (CVE-2026-33845)
  * gnutls: Fix RSA-PSK identity truncation (CVE-2026-42010)
  * gnutls: Fix case-sensitivity of domain name comparison in name constraints (CVE-2026-3833)
  * gnutls: Fix intersecting empty name constraints (CVE-2026-42011)
  * gnutls: Denial of Service via heap buffer overflow in DTLS handshake fragment reassembly (CVE-2026-33846)


For more details about the security issue(s), including the impact, a CVSS  
score, acknowledgments, and other related information, refer to the CVE page(s)  
listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-26"/>
          <updated date="2026-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2445763" id="2445763"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450624" id="2450624"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2450625" id="2450625"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467279" id="2467279"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467289" id="2467289"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2467437" id="2467437"></bugzilla>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-3832" impact="Low" cwe="CWE-179" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-3832</cve>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-3833" impact="Moderate" cwe="CWE-178" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-3833</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-5260" impact="Moderate" cwe="CWE-1284" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H">CVE-2026-5260</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-5419" impact="Low" cwe="CWE-208" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N">CVE-2026-5419</cve>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-33845" impact="Important" cwe="CWE-191" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33845</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-33846" impact="Important" cwe="CWE-130" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33846</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42009" impact="Important" cwe="CWE-475" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-42009</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42010" impact="Important" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N">CVE-2026-42010</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42011" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-42011</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42012" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:N">CVE-2026-42012</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42013" impact="Moderate" cwe="CWE-1284" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N">CVE-2026-42013</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42014" impact="Moderate">CVE-2026-42014</cve>
          <cve public="20260429" href="https://access.redhat.com/security/cve/CVE-2026-42015" impact="Moderate" cwe="CWE-193" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-42015</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620613001" comment="gnutls-fips is earlier than 0:3.8.10-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115010" comment="gnutls-fips is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620613002" comment="gnutls-utils is earlier than 0:3.8.10-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115012" comment="gnutls-utils is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620613003" comment="gnutls is earlier than 0:3.8.10-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115002" comment="gnutls is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620613004" comment="gnutls-c++ is earlier than 0:3.8.10-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115004" comment="gnutls-c++ is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620613005" comment="gnutls-dane is earlier than 0:3.8.10-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115006" comment="gnutls-dane is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620613006" comment="gnutls-devel is earlier than 0:3.8.10-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202516115008" comment="gnutls-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202624758" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:24758: libyang security update (Important)</title>
        <reference ref_id="CVE-2026-44673" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44673"/>
        <reference ref_id="RHSA-2026:24758" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:24758"/>
        <reference ref_id="ALSA-2026:24758" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-24758.html"/>
        <description>Libyang is YANG data modeling language parser and toolkit written (and providing API) in C.  

Security Fix(es):  

  * libyang: libyang: Denial of Service or arbitrary code execution via maliciously crafted LYB binary blob (CVE-2026-44673)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-09"/>
          <updated date="2026-06-09"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2477617" id="2477617"></bugzilla>
          <cve public="20260514" href="https://access.redhat.com/security/cve/CVE-2026-44673" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-44673</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624758001" comment="libyang is earlier than 0:2.1.148-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624758002" comment="libyang is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624758003" comment="libyang-devel is earlier than 0:2.1.148-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624758004" comment="libyang-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624758005" comment="libyang-devel-doc is earlier than 0:2.1.148-4.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624758006" comment="libyang-devel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202619146" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:19146: openexr security update (Important)</title>
        <reference ref_id="CVE-2026-34588" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-34588"/>
        <reference ref_id="RHSA-2026:19146" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:19146"/>
        <reference ref_id="ALSA-2026:19146" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-19146.html"/>
        <description>OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR.  

Security Fix(es):  

  * OpenEXR: OpenEXR: Arbitrary code execution and information disclosure via crafted EXR file (CVE-2026-34588)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-19"/>
          <updated date="2026-05-19"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2455408" id="2455408"></bugzilla>
          <cve public="20260406" href="https://access.redhat.com/security/cve/CVE-2026-34588" impact="Important" cwe="CWE-190" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-34588</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619146001" comment="openexr is earlier than 0:3.1.10-8.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682004" comment="openexr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619146002" comment="openexr-libs is earlier than 0:3.1.10-8.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682002" comment="openexr-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202619146003" comment="openexr-devel is earlier than 0:3.1.10-8.el10_2.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20267682006" comment="openexr-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202625341" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:25341: tomcat9 update (Important)</title>
        <reference ref_id="RHSA-2026:25341" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:25341"/>
        <reference ref_id="ALSA-2026:25341" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-25341.html"/>
        <description>Certificate revocation bypass due to improper OCSP response validation
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-11"/>
          <updated date="2026-06-11"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2440426" id="2440426"></bugzilla>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341001" comment="tomcat9 is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494002" comment="tomcat9 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341002" comment="tomcat9-admin-webapps is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494004" comment="tomcat9-admin-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341003" comment="tomcat9-docs-webapp is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494006" comment="tomcat9-docs-webapp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341004" comment="tomcat9-el-3.0-api is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494008" comment="tomcat9-el-3.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341005" comment="tomcat9-jsp-2.3-api is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494010" comment="tomcat9-jsp-2.3-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341006" comment="tomcat9-lib is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494012" comment="tomcat9-lib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341007" comment="tomcat9-servlet-4.0-api is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494014" comment="tomcat9-servlet-4.0-api is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202625341008" comment="tomcat9-webapps is earlier than 1:9.0.117-1.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257494016" comment="tomcat9-webapps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202620600" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:20600: wireshark security update (Important)</title>
        <reference ref_id="CVE-2026-5405" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5405"/>
        <reference ref_id="CVE-2026-5656" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-5656"/>
        <reference ref_id="RHSA-2026:20600" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:20600"/>
        <reference ref_id="ALSA-2026:20600" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-20600.html"/>
        <description>The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network.  

Security Fix(es):  

  * wireshark: Heap-based Buffer Overflow in Wireshark (CVE-2026-5405)
  * wireshark: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Wireshark (CVE-2026-5656)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-05-26"/>
          <updated date="2026-05-26"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2464273" id="2464273"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464276" id="2464276"></bugzilla>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-5405" impact="Important" cwe="CWE-122" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5405</cve>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-5656" impact="Important" cwe="CWE-22" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-5656</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620600001" comment="wireshark is earlier than 1:4.4.2-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121002" comment="wireshark is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620600002" comment="wireshark-cli is earlier than 1:4.4.2-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121004" comment="wireshark-cli is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202620600003" comment="wireshark-devel is earlier than 1:4.4.2-10.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259121006" comment="wireshark-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202641937" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:41937: sssd security update (Important)</title>
        <reference ref_id="CVE-2026-14474" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-14474"/>
        <reference ref_id="CVE-2026-14476" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-14476"/>
        <reference ref_id="RHSA-2026:41937" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:41937"/>
        <reference ref_id="ALSA-2026:41937" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-41937.html"/>
        <description>The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources.  

Security Fix(es):  

  * sssd: sssd: sudo LDAP provider searches entire directory tree for sudoRole objects by default, enabling privilege escalation (CVE-2026-14474)
  * sssd: sssd: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication bypass (CVE-2026-14476)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2496556" id="2496556"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2496581" id="2496581"></bugzilla>
          <cve public="20260707" href="https://access.redhat.com/security/cve/CVE-2026-14474" impact="Important" cwe="CWE-1188" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-14474</cve>
          <cve public="20260707" href="https://access.redhat.com/security/cve/CVE-2026-14476" impact="Moderate" cwe="CWE-23" cvss3="CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H">CVE-2026-14476</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937001" comment="sssd-ipa is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020002" comment="sssd-ipa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937002" comment="sssd-kcm is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020004" comment="sssd-kcm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937003" comment="sssd-krb5 is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020006" comment="sssd-krb5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937004" comment="sssd-krb5-common is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020008" comment="sssd-krb5-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937005" comment="sssd-ldap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020010" comment="sssd-ldap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937006" comment="sssd-nfs-idmap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020012" comment="sssd-nfs-idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937007" comment="sssd-passkey is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020014" comment="sssd-passkey is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937008" comment="sssd-proxy is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020016" comment="sssd-proxy is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937009" comment="sssd-tools is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020018" comment="sssd-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937010" comment="sssd-winbind-idmap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020020" comment="sssd-winbind-idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937011" comment="libsss_nss_idmap-devel is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020056" comment="libsss_nss_idmap-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937012" comment="libipa_hbac is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020022" comment="libipa_hbac is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937013" comment="libsss_autofs is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020024" comment="libsss_autofs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937014" comment="libsss_certmap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020026" comment="libsss_certmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937015" comment="libsss_idmap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020028" comment="libsss_idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937016" comment="libsss_nss_idmap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020030" comment="libsss_nss_idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937017" comment="libsss_sudo is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020032" comment="libsss_sudo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937018" comment="python3-libipa_hbac is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020034" comment="python3-libipa_hbac is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937019" comment="python3-libsss_nss_idmap is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020036" comment="python3-libsss_nss_idmap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937020" comment="python3-sss is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020038" comment="python3-sss is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937021" comment="python3-sss-murmur is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020040" comment="python3-sss-murmur is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937022" comment="sssd is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020042" comment="sssd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937023" comment="sssd-ad is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020044" comment="sssd-ad is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937024" comment="sssd-client is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020046" comment="sssd-client is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937025" comment="sssd-common is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020048" comment="sssd-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937026" comment="sssd-common-pac is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020050" comment="sssd-common-pac is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937027" comment="sssd-dbus is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020052" comment="sssd-dbus is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937028" comment="sssd-idp is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020054" comment="sssd-idp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641937029" comment="python3-sssdconfig is earlier than 0:2.12.0-3.el10_2.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202521020058" comment="python3-sssdconfig is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202635832" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:35832: golang-github-openprinting-ipp-usb security update (Important)</title>
        <reference ref_id="CVE-2026-27145" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-27145"/>
        <reference ref_id="CVE-2026-33811" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-33811"/>
        <reference ref_id="RHSA-2026:35832" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:35832"/>
        <reference ref_id="ALSA-2026:35832" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-35832.html"/>
        <description>HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables  
driverless support for USB devices capable of using IPP-over-USB protocol.  

Security Fix(es):  

  * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)
  * crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-06"/>
          <updated date="2026-07-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2467822" id="2467822"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2484207" id="2484207"></bugzilla>
          <cve public="20260602" href="https://access.redhat.com/security/cve/CVE-2026-27145" impact="Important" cwe="CWE-606" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-27145</cve>
          <cve public="20260507" href="https://access.redhat.com/security/cve/CVE-2026-33811" impact="Important" cwe="CWE-1341" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-33811</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202635832001" comment="ipp-usb is earlier than 0:0.9.27-7.el10_2.2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20259156002" comment="ipp-usb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202624347" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:24347: frr security update (Important)</title>
        <reference ref_id="CVE-2026-37457" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-37457"/>
        <reference ref_id="CVE-2026-37459" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-37459"/>
        <reference ref_id="RHSA-2026:24347" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:24347"/>
        <reference ref_id="ALSA-2026:24347" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-24347.html"/>
        <description>FRRouting is free software that manages TCP/IP based routing protocols. It supports BGP4, OSPFv2, OSPFv3, ISIS, RIP, RIPng, PIM, NHRP, PBR, EIGRP and BFD.   

Security Fix(es):  

  * frr: denial of service via crafted FlowSpec component (CVE-2026-37457)
  * frr: denial of service via crafted BGP UPDATE message (CVE-2026-37459)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-06-08"/>
          <updated date="2026-06-08"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2464548" id="2464548"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2466513" id="2466513"></bugzilla>
          <cve public="20260501" href="https://access.redhat.com/security/cve/CVE-2026-37457" impact="Important" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-37457</cve>
          <cve public="20260504" href="https://access.redhat.com/security/cve/CVE-2026-37459" impact="Important" cwe="CWE-191" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-37459</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624347001" comment="frr is earlier than 0:10.4.4-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624347002" comment="frr is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624347003" comment="frr-selinux is earlier than 0:10.4.4-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202624347004" comment="frr-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202643505" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:43505: mariadb-connector-c security update (Important)</title>
        <reference ref_id="CVE-2026-44172" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-44172"/>
        <reference ref_id="RHSA-2026:43505" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:43505"/>
        <reference ref_id="ALSA-2026:43505" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-43505.html"/>
        <description>The MariaDB Native Client library (C driver) is used to connect applications developed in C/C++ to MariaDB and MySQL databases.   

Security Fix(es):  

  * mariadb: MariaDB server: SQL injection vulnerability via improper handling of big5 character set with mysql_real_escape_string() (CVE-2026-44172)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-22"/>
          <updated date="2026-07-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2488459" id="2488459"></bugzilla>
          <cve public="20260612" href="https://access.redhat.com/security/cve/CVE-2026-44172" impact="Important" cwe="CWE-89" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N">CVE-2026-44172</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505001" comment="mariadb-connector-c is earlier than 0:3.4.4-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505002" comment="mariadb-connector-c is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505003" comment="mariadb-connector-c-devel is earlier than 0:3.4.4-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505004" comment="mariadb-connector-c-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505005" comment="mariadb-connector-c-test is earlier than 0:3.4.4-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505006" comment="mariadb-connector-c-test is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505007" comment="mariadb-connector-c-config is earlier than 0:3.4.4-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505008" comment="mariadb-connector-c-config is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505009" comment="mariadb-connector-c-doc is earlier than 0:3.4.4-2.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202643505010" comment="mariadb-connector-c-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202635827" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:35827: grafana security update (Important)</title>
        <reference ref_id="CVE-2026-39821" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39821"/>
        <reference ref_id="RHSA-2026:35827" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:35827"/>
        <reference ref_id="ALSA-2026:35827" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-35827.html"/>
        <description>Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB &amp; OpenTSDB.   

Security Fix(es):  

  * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-06"/>
          <updated date="2026-07-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480756" id="2480756"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39821" impact="Important" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2026-39821</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635827001" comment="grafana is earlier than 0:10.2.6-27.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475002" comment="grafana is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202635827002" comment="grafana-selinux is earlier than 0:10.2.6-27.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257475004" comment="grafana-selinux is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202635826" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:35826: grafana-pcp security update (Important)</title>
        <reference ref_id="CVE-2026-39821" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-39821"/>
        <reference ref_id="RHSA-2026:35826" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:35826"/>
        <reference ref_id="ALSA-2026:35826" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-35826.html"/>
        <description>The Grafana plugin for Performance Co-Pilot includes datasources for scalable time series from pmseries and Redis, live PCP metrics and bpftrace scripts from pmdabpftrace, as well as several dashboards.  

Security Fix(es):  

  * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-06"/>
          <updated date="2026-07-06"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2480756" id="2480756"></bugzilla>
          <cve public="20260522" href="https://access.redhat.com/security/cve/CVE-2026-39821" impact="Important" cwe="CWE-1289" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N">CVE-2026-39821</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202635826001" comment="grafana-pcp is earlier than 0:5.3.0-7.el10_2"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:20258915002" comment="grafana-pcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202636189" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:36189: perl-HTTP-Daemon security update (Important)</title>
        <reference ref_id="CVE-2026-8450" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-8450"/>
        <reference ref_id="RHSA-2026:36189" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:36189"/>
        <reference ref_id="ALSA-2026:36189" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-36189.html"/>
        <description>The perl-HTTP-Daemon package includes the [HTTP::Daemon](HTTP::Daemon) class, a subclass of IO::Socket::IP. Instances of the [HTTP::Daemon](HTTP::Daemon) class are HTTP/1.1 servers that listen on a socket for incoming requests.  

Security Fix(es):  

  * perl-HTTP-Daemon: [HTTP::Daemon:](HTTP::Daemon:) Arbitrary code execution via OS command injection in send_file() (CVE-2026-8450)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-07"/>
          <updated date="2026-07-07"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2481773" id="2481773"></bugzilla>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-8450" impact="Important" cwe="CWE-78" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-8450</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202636189001" comment="perl-HTTP-Daemon is earlier than 0:6.16-7.el10_2.1"/>
          <criterion test_ref="oval:org.almalinux.alsa:tst:202636189002" comment="perl-HTTP-Daemon is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202644391" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:44391: libpq security update (Important)</title>
        <reference ref_id="CVE-2026-6477" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-6477"/>
        <reference ref_id="RHSA-2026:44391" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:44391"/>
        <reference ref_id="ALSA-2026:44391" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-44391.html"/>
        <description>The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers.   

Security Fix(es):  

  * postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2477442" id="2477442"></bugzilla>
          <cve public="20260514" href="https://access.redhat.com/security/cve/CVE-2026-6477" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H">CVE-2026-6477</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644391001" comment="libpq is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260594002" comment="libpq is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644391002" comment="libpq-devel is earlier than 0:16.14-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20260594004" comment="libpq-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202644270" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:44270: kernel security update (Important)</title>
        <reference ref_id="CVE-2026-46323" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46323"/>
        <reference ref_id="RHSA-2026:44270" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:44270"/>
        <reference ref_id="ALSA-2026:44270" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-44270.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: Linux kernel: Use-After-Free in net/gro due to improper handling of zerocopy skbs (CVE-2026-46323)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2479832" id="2479832"></bugzilla>
          <cve public="20260519" href="https://access.redhat.com/security/cve/CVE-2026-46323" impact="Important" cwe="CWE-123" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46323</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270001" comment="perf is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270002" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270003" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270004" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270005" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270006" comment="kernel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270007" comment="kernel-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270008" comment="kernel-debug is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270009" comment="kernel-debug-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270010" comment="kernel-debug-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270011" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270012" comment="kernel-debug-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270013" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270014" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270015" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270016" comment="kernel-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270017" comment="kernel-devel-matched is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270018" comment="kernel-headers is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270019" comment="kernel-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270020" comment="kernel-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270021" comment="kernel-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270022" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270023" comment="kernel-rt is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270024" comment="kernel-rt-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270025" comment="kernel-rt-debug is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270026" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270027" comment="kernel-rt-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270028" comment="kernel-rt-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270031" comment="kernel-tools is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270032" comment="kernel-tools-libs is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270033" comment="kernel-uki-virt is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270034" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270035" comment="python3-perf is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270036" comment="rtla is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270037" comment="rv is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270045" comment="kernel-64k is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270046" comment="kernel-64k-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270073" comment="libperf is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202644270075" comment="kernel-doc is earlier than 0:6.12.0-211.38.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202642895" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:42895: java-21-openjdk security update (Important)</title>
        <reference ref_id="CVE-2026-41254" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-41254"/>
        <reference ref_id="CVE-2026-46917" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46917"/>
        <reference ref_id="CVE-2026-46968" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46968"/>
        <reference ref_id="CVE-2026-47010" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47010"/>
        <reference ref_id="CVE-2026-47021" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47021"/>
        <reference ref_id="CVE-2026-47027" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47027"/>
        <reference ref_id="CVE-2026-47059" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47059"/>
        <reference ref_id="CVE-2026-47063" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47063"/>
        <reference ref_id="CVE-2026-60147" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-60147"/>
        <reference ref_id="RHSA-2026:42895" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:42895"/>
        <reference ref_id="ALSA-2026:42895" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-42895.html"/>
        <description>The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.  

Security Fix(es):  

  * JDK: Enhance TLS certificate handling (CVE-2026-46968)
  * JDK: Improve DTLS handshaking (CVE-2026-46917)
  * JDK: Enhance JPEG handling (CVE-2026-47010)
  * JDK: Enhance XBM image support (CVE-2026-47021)
  * JDK: Enhance Jar file processing (CVE-2026-47027)
  * JDK: Improve certification checking (CVE-2026-60147)
  * JDK: Enhance AWT ImagingLib (CVE-2026-47059)
  * JDK: Enhance Jar handling (CVE-2026-47063)
  * JDK: Update LCMS to 2.19 (CVE-2026-41254)


Enhancement(s):  

  * For the last couple of years, OpenJDK has used a single build shared among multiple RPMs and a tarball available on the customer portal. The single "portable" build has a release number ('p') and each RPM has its own release number ('r'). However, the RPM naming only showed the RPM release number, while the version output from the build showed the portable release number, making it unclear that they were different numbers. From this release onwards, a release field of the form 'p.r' is always used for RPMs and the version output shows 'p'. (AlmaLinux-212337, AlmaLinux-212338, AlmaLinux-212339, AlmaLinux-212340, AlmaLinux-212342, AlmaLinux-212343)


Bug Fix(es):  

  * In previous releases, the RPM did not correctly own the subdirectories used for documentation in /usr/share/doc and /usr/share/javadoc. This is fixed in this release, so these subdirectories will be removed when the package is uninstalled. (AlmaLinux-212353, AlmaLinux-212359, AlmaLinux-212360, AlmaLinux-212361)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-22"/>
          <updated date="2026-07-22"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2459420" id="2459420"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502751" id="2502751"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502782" id="2502782"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502783" id="2502783"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502784" id="2502784"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502791" id="2502791"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502792" id="2502792"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2502793" id="2502793"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2503636" id="2503636"></bugzilla>
          <cve public="20260418" href="https://access.redhat.com/security/cve/CVE-2026-41254" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H">CVE-2026-41254</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-46917" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-46917</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-46968" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-46968</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-47010" impact="Low" cwe="CWE-787" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N">CVE-2026-47010</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-47021" impact="Moderate" cwe="CWE-1333" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-47021</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-47027" impact="Moderate" cwe="CWE-400" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-47027</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-47059" impact="Low" cwe="CWE-476" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-47059</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-47063" impact="Important" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N">CVE-2026-47063</cve>
          <cve public="20260721" href="https://access.redhat.com/security/cve/CVE-2026-60147" impact="Moderate" cwe="CWE-295" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N">CVE-2026-60147</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895001" comment="java-21-openjdk is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508002" comment="java-21-openjdk is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895002" comment="java-21-openjdk-demo is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508004" comment="java-21-openjdk-demo is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895003" comment="java-21-openjdk-devel is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508006" comment="java-21-openjdk-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895004" comment="java-21-openjdk-headless is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508008" comment="java-21-openjdk-headless is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895005" comment="java-21-openjdk-javadoc is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508010" comment="java-21-openjdk-javadoc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895006" comment="java-21-openjdk-javadoc-zip is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508012" comment="java-21-openjdk-javadoc-zip is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895007" comment="java-21-openjdk-jmods is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508014" comment="java-21-openjdk-jmods is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895008" comment="java-21-openjdk-src is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508016" comment="java-21-openjdk-src is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895009" comment="java-21-openjdk-static-libs is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508018" comment="java-21-openjdk-static-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895010" comment="java-21-openjdk-demo-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508020" comment="java-21-openjdk-demo-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895011" comment="java-21-openjdk-demo-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508022" comment="java-21-openjdk-demo-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895012" comment="java-21-openjdk-devel-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508024" comment="java-21-openjdk-devel-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895013" comment="java-21-openjdk-devel-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508026" comment="java-21-openjdk-devel-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895014" comment="java-21-openjdk-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508028" comment="java-21-openjdk-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895015" comment="java-21-openjdk-headless-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508030" comment="java-21-openjdk-headless-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895016" comment="java-21-openjdk-headless-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508032" comment="java-21-openjdk-headless-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895017" comment="java-21-openjdk-jmods-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508034" comment="java-21-openjdk-jmods-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895018" comment="java-21-openjdk-jmods-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508036" comment="java-21-openjdk-jmods-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895019" comment="java-21-openjdk-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508038" comment="java-21-openjdk-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895020" comment="java-21-openjdk-src-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508040" comment="java-21-openjdk-src-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895021" comment="java-21-openjdk-src-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508042" comment="java-21-openjdk-src-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895022" comment="java-21-openjdk-static-libs-fastdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508044" comment="java-21-openjdk-static-libs-fastdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642895023" comment="java-21-openjdk-static-libs-slowdebug is earlier than 1:21.0.12.0.8-1.2.el10_2.alma.2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257508046" comment="java-21-openjdk-static-libs-slowdebug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202642919" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:42919: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2025-71113" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-71113"/>
        <reference ref_id="CVE-2025-71147" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-71147"/>
        <reference ref_id="CVE-2026-23168" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23168"/>
        <reference ref_id="CVE-2026-31530" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31530"/>
        <reference ref_id="CVE-2026-46116" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46116"/>
        <reference ref_id="CVE-2026-46150" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46150"/>
        <reference ref_id="CVE-2026-46215" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46215"/>
        <reference ref_id="CVE-2026-52950" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52950"/>
        <reference ref_id="CVE-2026-52976" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52976"/>
        <reference ref_id="CVE-2026-53009" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53009"/>
        <reference ref_id="CVE-2026-53071" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53071"/>
        <reference ref_id="RHSA-2026:42919" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:42919"/>
        <reference ref_id="ALSA-2026:42919" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-42919.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: crypto: af_alg - zero initialize memory allocated via sock_kmalloc (CVE-2025-71113)
  * kernel: Linux kernel: Denial of Service due to memory leak in tpm2_load_cmd (CVE-2025-71147)
  * kernel: flex_proportions: make fprop_new_period() hardirq safe (CVE-2026-23168)
  * kernel: cxl/port: Fix use after free of parent_port in cxl_detach_ep() (CVE-2026-31530)
  * kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)
  * kernel: fanotify: fix false positive on permission events (CVE-2026-46150)
  * kernel: drm: Set old handle to NULL before prime swap in change_handle (CVE-2026-46215)
  * kernel: drm/xe: Fix error cleanup in xe_exec_queue_create_ioctl() (CVE-2026-52976)
  * kernel: drm/xe/dma-buf: fix UAF with retry loop (CVE-2026-52950)
  * kernel: ice: fix double-free of tx_buf skb (CVE-2026-53009)
  * kernel: Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp (CVE-2026-53071)
  * kernel: can: bcm: thrtimer use-after-free during RX operation teardown ()


Bug Fix(es) and Enhancement(s):  

  * nfsd_file slab cache objects remaining on kmem_cache_shutdown during nfsd teardown while running bz1477872 testcase (JIRA:AlmaLinux-173103)
  * tools/lib/perf/Makefile: libperf includes appended after CFLAGS causes parallel build race, breaking kernel builds [almalinux-10.2.z] (JIRA:AlmaLinux-183975)
  * [AlmaLinux10-debug]: BUG: KASAN: slab-use-after-free in __pv_queued_spin_lock_slowpath [almalinux-10.2.z] (JIRA:AlmaLinux-186311)
  * ice: driver update 2026-06, part 1 [almalinux-10.2.z] (JIRA:AlmaLinux-191324)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-21"/>
          <updated date="2026-07-21"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2429611" id="2429611"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2432366" id="2432366"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2439941" id="2439941"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2460644" id="2460644"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482523" id="2482523"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482612" id="2482612"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2482615" id="2482615"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492284" id="2492284"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492318" id="2492318"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492390" id="2492390"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492458" id="2492458"></bugzilla>
          <cve public="20260114" href="https://access.redhat.com/security/cve/CVE-2025-71113" impact="Low" cwe="CWE-909" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L">CVE-2025-71113</cve>
          <cve public="20260123" href="https://access.redhat.com/security/cve/CVE-2025-71147" impact="Moderate" cwe="CWE-772" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-71147</cve>
          <cve public="20260214" href="https://access.redhat.com/security/cve/CVE-2026-23168" impact="Moderate" cwe="CWE-833" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-23168</cve>
          <cve public="20260422" href="https://access.redhat.com/security/cve/CVE-2026-31530" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-31530</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46116" impact="Important" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46116</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46150" impact="Moderate" cwe="CWE-280" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-46150</cve>
          <cve public="20260528" href="https://access.redhat.com/security/cve/CVE-2026-46215" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46215</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-52950" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-52950</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-52976" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-52976</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-53009" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-53009</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-53071" impact="Moderate" cwe="CWE-416" cvss3="CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-53071</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919001" comment="kernel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919002" comment="kernel-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919003" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919004" comment="kernel-rt-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919005" comment="kernel-rt-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919006" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919007" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919008" comment="kernel-tools is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919009" comment="kernel-tools-libs is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919010" comment="kernel-uki-virt is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919011" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919012" comment="perf is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919013" comment="python3-perf is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919014" comment="rtla is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919015" comment="rv is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919016" comment="kernel-cross-headers is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919017" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919018" comment="libperf is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919019" comment="kernel-debug is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919020" comment="kernel-debug-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919021" comment="kernel-debug-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919022" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919023" comment="kernel-debug-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919024" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919025" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919026" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919027" comment="kernel-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919028" comment="kernel-devel-matched is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919029" comment="kernel-headers is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919030" comment="kernel-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919031" comment="kernel-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919032" comment="kernel-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919033" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919034" comment="kernel-rt is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919035" comment="kernel-rt-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919036" comment="kernel-rt-debug is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919037" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919038" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919039" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919040" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919041" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919042" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919043" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919044" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919045" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919046" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919047" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919048" comment="kernel-64k is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919049" comment="kernel-64k-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919050" comment="kernel-64k-debug is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919051" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919052" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919053" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919054" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919055" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919056" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919057" comment="kernel-64k-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919058" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919059" comment="kernel-64k-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919060" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919061" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919062" comment="kernel-rt-64k is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919063" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919064" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919065" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919066" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919067" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919068" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919069" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919070" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919071" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919072" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919073" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202642919075" comment="kernel-doc is earlier than 0:6.12.0-211.37.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202647017" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:47017: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-46086" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46086"/>
        <reference ref_id="CVE-2026-52993" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52993"/>
        <reference ref_id="CVE-2026-53006" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53006"/>
        <reference ref_id="CVE-2026-53281" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53281"/>
        <reference ref_id="RHSA-2026:47017" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:47017"/>
        <reference ref_id="ALSA-2026:47017" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-47017.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: net: bridge: use a stable FDB dst snapshot in RCU readers (CVE-2026-46086)
  * kernel: ipv6: fix possible UAF in icmpv6_rcv() (CVE-2026-53006)
  * kernel: tipc: fix double-free in tipc_buf_append() (CVE-2026-52993)
  * kernel: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption (CVE-2026-53281)


Bug Fix(es) and Enhancement(s):  

  * rxrpc: Address CVE-2026-43500 [almalinux-10.2.z] (JIRA:AlmaLinux-178254)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-28"/>
          <updated date="2026-07-28"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2481989" id="2481989"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492363" id="2492363"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492437" id="2492437"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2493728" id="2493728"></bugzilla>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-46086" impact="Moderate" cwe="CWE-367" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-46086</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-52993" impact="Important" cwe="CWE-763" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-52993</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-53006" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-53006</cve>
          <cve public="20260626" href="https://access.redhat.com/security/cve/CVE-2026-53281" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-53281</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017001" comment="kernel-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017002" comment="kernel-debug is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017003" comment="kernel-debug-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017004" comment="kernel-debug-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017005" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017006" comment="kernel-debug-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017007" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017008" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017009" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017010" comment="kernel-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017011" comment="kernel-devel-matched is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017012" comment="kernel-headers is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017013" comment="kernel-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017014" comment="kernel-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017015" comment="kernel-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017016" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017017" comment="kernel-rt is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017018" comment="kernel-rt-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017019" comment="kernel-rt-debug is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017020" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017021" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017022" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017023" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017024" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017025" comment="kernel-rt-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017026" comment="kernel-rt-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017027" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017028" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017029" comment="kernel-tools is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017030" comment="kernel-tools-libs is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017031" comment="kernel-uki-virt is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017032" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017033" comment="perf is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017034" comment="python3-perf is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017035" comment="rtla is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017036" comment="rv is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017037" comment="kernel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017045" comment="kernel-64k is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017046" comment="kernel-64k-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017073" comment="libperf is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647017075" comment="kernel-doc is earlier than 0:6.12.0-211.40.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202646398" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:46398: libreswan security update (Important)</title>
        <reference ref_id="CVE-2026-12413" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-12413"/>
        <reference ref_id="CVE-2026-14957" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-14957"/>
        <reference ref_id="CVE-2026-50721" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50721"/>
        <reference ref_id="CVE-2026-50722" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50722"/>
        <reference ref_id="RHSA-2026:46398" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:46398"/>
        <reference ref_id="ALSA-2026:46398" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-46398.html"/>
        <description>Libreswan is an implementation of IPsec and IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks such as virtual private network (VPN).  

Security Fix(es):  

  * librenswan: IKEv1 Denial of Service via RSA-SHA1 (PKCS#1 Version 1.5 Encrypted) authentication payload (CVE-2026-50721)
  * librenswan: IKEv2 Denial of Service via RSA-SHA1 (PKCS#1 RSASSA-PKCS1-v1_5) authentication payload (CVE-2026-50722)
  * librenswan: IKEv2 Denial of Service via malformed fragmentation (CVE-2026-12413)
  * libreswan: badly formatted X.509 certificate can cause an assertion failure that crashes the daemon process (CVE-2026-14957)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-27"/>
          <updated date="2026-07-27"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2494147" id="2494147"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2494148" id="2494148"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2494149" id="2494149"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2501764" id="2501764"></bugzilla>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-12413" impact="Important" cwe="CWE-193" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-12413</cve>
          <cve public="20260715" href="https://access.redhat.com/security/cve/CVE-2026-14957" impact="Moderate" cwe="CWE-617" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-14957</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-50721" impact="Moderate" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50721</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-50722" impact="Moderate" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50722</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202646398001" comment="libreswan is earlier than 0:5.3.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202646398002" comment="libreswan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202646398003" comment="libreswan-minimal is earlier than 0:5.3.2-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202646398004" comment="libreswan-minimal is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202647757" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:47757: openssh security update (Important)</title>
        <reference ref_id="CVE-2026-55653" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-55653"/>
        <reference ref_id="CVE-2026-55654" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-55654"/>
        <reference ref_id="CVE-2026-55655" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-55655"/>
        <reference ref_id="CVE-2026-59996" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-59996"/>
        <reference ref_id="CVE-2026-60002" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-60002"/>
        <reference ref_id="RHSA-2026:47757" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:47757"/>
        <reference ref_id="ALSA-2026:47757" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-47757.html"/>
        <description>OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server.  

Security Fix(es):  

  * openssh: Local MITM of X11 forwarding via abstract UNIX socket pre-binding in AlmaLinux OpenSSH client versions (CVE-2026-55655)
  * openssh: Double free in AlmaLinux versions of OpenSSH DH-GEX client path during FIPS known-group validation leads to client-side denial of service (CVE-2026-55653)
  * openssh: Heap out-of-bounds read in AlmaLinux versions of OpenSSH GSSAPI indicator cleanup due to missing NULL sentinel termination (CVE-2026-55654)
  * openssh: OpenSSH: Use-after-free vulnerability during host key re-exchange on the client side (CVE-2026-60002)
  * openssh: OpenSSH: `scp` file misplacement vulnerability during remote copy (CVE-2026-59996)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-29"/>
          <updated date="2026-07-29"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2462250" id="2462250"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2462351" id="2462351"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2462493" id="2462493"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2497936" id="2497936"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2497944" id="2497944"></bugzilla>
          <cve public="20260622" href="https://access.redhat.com/security/cve/CVE-2026-55653" impact="Moderate" cwe="CWE-415" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L">CVE-2026-55653</cve>
          <cve public="20260622" href="https://access.redhat.com/security/cve/CVE-2026-55654" impact="Low" cwe="CWE-125" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L">CVE-2026-55654</cve>
          <cve public="20260622" href="https://access.redhat.com/security/cve/CVE-2026-55655" impact="Moderate" cwe="CWE-923" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:N">CVE-2026-55655</cve>
          <cve public="20260708" href="https://access.redhat.com/security/cve/CVE-2026-59996" impact="Moderate" cwe="CWE-22" cvss3="CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L">CVE-2026-59996</cve>
          <cve public="20260708" href="https://access.redhat.com/security/cve/CVE-2026-60002" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L">CVE-2026-60002</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647757001" comment="openssh is earlier than 0:9.9p1-25.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126002" comment="openssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647757002" comment="openssh-askpass is earlier than 0:9.9p1-25.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126004" comment="openssh-askpass is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647757003" comment="openssh-clients is earlier than 0:9.9p1-25.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126006" comment="openssh-clients is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647757004" comment="openssh-keycat is earlier than 0:9.9p1-25.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126008" comment="openssh-keycat is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647757005" comment="openssh-keysign is earlier than 0:9.9p1-25.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126010" comment="openssh-keysign is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202647757006" comment="openssh-server is earlier than 0:9.9p1-25.el10_2.alma.1"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520126012" comment="openssh-server is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202648585" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:48585: fence-agents security update (Important)</title>
        <reference ref_id="CVE-2026-59939" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-59939"/>
        <reference ref_id="RHSA-2026:48585" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:48585"/>
        <reference ref_id="ALSA-2026:48585" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-48585.html"/>
        <description>The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster.   

Security Fix(es):  

  * httplib2: httplib2: Denial of Service via unbounded decompression of HTTP response bodies (CVE-2026-59939)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-30"/>
          <updated date="2026-07-30"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2498212" id="2498212"></bugzilla>
          <cve public="20260708" href="https://access.redhat.com/security/cve/CVE-2026-59939" impact="Important" cwe="CWE-409" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-59939</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585001" comment="fence-agents-aliyun is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905002" comment="fence-agents-aliyun is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585002" comment="fence-agents-all is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905004" comment="fence-agents-all is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585003" comment="fence-agents-aws is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905006" comment="fence-agents-aws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585004" comment="fence-agents-azure-arm is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905008" comment="fence-agents-azure-arm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585005" comment="fence-agents-common is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905010" comment="fence-agents-common is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585006" comment="fence-agents-gce is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905012" comment="fence-agents-gce is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585007" comment="fence-agents-kdump is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905014" comment="fence-agents-kdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585008" comment="fence-agents-kubevirt is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905016" comment="fence-agents-kubevirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585009" comment="fence-agents-openstack is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905018" comment="fence-agents-openstack is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585010" comment="fence-agents-redfish is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905020" comment="fence-agents-redfish is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585011" comment="fence-virt is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905022" comment="fence-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585012" comment="fence-virtd is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905024" comment="fence-virtd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585013" comment="fence-virtd-cpg is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905026" comment="fence-virtd-cpg is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585014" comment="fence-virtd-libvirt is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905028" comment="fence-virtd-libvirt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585015" comment="fence-virtd-multicast is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905030" comment="fence-virtd-multicast is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585016" comment="fence-virtd-serial is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905032" comment="fence-virtd-serial is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585017" comment="fence-virtd-tcp is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905034" comment="fence-virtd-tcp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585018" comment="ha-cloud-support is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905036" comment="ha-cloud-support is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585019" comment="fence-agents-zvm is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905038" comment="fence-agents-zvm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585020" comment="fence-agents-amt-ws is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905040" comment="fence-agents-amt-ws is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585021" comment="fence-agents-apc is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905042" comment="fence-agents-apc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585022" comment="fence-agents-apc-snmp is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905044" comment="fence-agents-apc-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585023" comment="fence-agents-bladecenter is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905046" comment="fence-agents-bladecenter is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585024" comment="fence-agents-brocade is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905048" comment="fence-agents-brocade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585025" comment="fence-agents-cisco-mds is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905050" comment="fence-agents-cisco-mds is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585026" comment="fence-agents-cisco-ucs is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905052" comment="fence-agents-cisco-ucs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585027" comment="fence-agents-drac5 is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905054" comment="fence-agents-drac5 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585028" comment="fence-agents-eaton-snmp is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905056" comment="fence-agents-eaton-snmp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585029" comment="fence-agents-emerson is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905058" comment="fence-agents-emerson is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585030" comment="fence-agents-eps is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905060" comment="fence-agents-eps is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585031" comment="fence-agents-heuristics-ping is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905062" comment="fence-agents-heuristics-ping is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585032" comment="fence-agents-hpblade is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905064" comment="fence-agents-hpblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585033" comment="fence-agents-ibm-powervs is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905066" comment="fence-agents-ibm-powervs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585034" comment="fence-agents-ibm-vpc is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905068" comment="fence-agents-ibm-vpc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585035" comment="fence-agents-ibmblade is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905070" comment="fence-agents-ibmblade is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585036" comment="fence-agents-ifmib is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905072" comment="fence-agents-ifmib is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585037" comment="fence-agents-ilo-moonshot is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905074" comment="fence-agents-ilo-moonshot is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585038" comment="fence-agents-ilo-mp is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905076" comment="fence-agents-ilo-mp is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585039" comment="fence-agents-ilo-ssh is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905078" comment="fence-agents-ilo-ssh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585040" comment="fence-agents-ilo2 is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905080" comment="fence-agents-ilo2 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585041" comment="fence-agents-intelmodular is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905082" comment="fence-agents-intelmodular is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585042" comment="fence-agents-ipdu is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905084" comment="fence-agents-ipdu is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585043" comment="fence-agents-ipmilan is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905086" comment="fence-agents-ipmilan is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585044" comment="fence-agents-mpath is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905088" comment="fence-agents-mpath is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585045" comment="fence-agents-nutanix-ahv is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905090" comment="fence-agents-nutanix-ahv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585046" comment="fence-agents-rhevm is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905092" comment="fence-agents-rhevm is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585047" comment="fence-agents-rsa is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905094" comment="fence-agents-rsa is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585048" comment="fence-agents-rsb is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905096" comment="fence-agents-rsb is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585049" comment="fence-agents-sbd is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905098" comment="fence-agents-sbd is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585050" comment="fence-agents-scsi is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905100" comment="fence-agents-scsi is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585051" comment="fence-agents-virsh is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905102" comment="fence-agents-virsh is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585052" comment="fence-agents-vmware-rest is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905104" comment="fence-agents-vmware-rest is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585053" comment="fence-agents-vmware-soap is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905106" comment="fence-agents-vmware-soap is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585054" comment="fence-agents-wti is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905108" comment="fence-agents-wti is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202648585055" comment="fence-agents-lpar is earlier than 0:4.16.0-21.el10_2.5"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20261905110" comment="fence-agents-lpar is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202645114" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:45114: kernel security update (Important)</title>
        <reference ref_id="CVE-2025-40237" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-40237"/>
        <reference ref_id="CVE-2026-23110" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-23110"/>
        <reference ref_id="CVE-2026-31692" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-31692"/>
        <reference ref_id="CVE-2026-46099" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46099"/>
        <reference ref_id="CVE-2026-52973" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-52973"/>
        <reference ref_id="CVE-2026-53059" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-53059"/>
        <reference ref_id="RHSA-2026:45114" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:45114"/>
        <reference ref_id="ALSA-2026:45114" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-45114.html"/>
        <reference ref_id="CVE-2026-64561" source="CVE" ref_url="https://www.redhat.com/security/data/cve/CVE-2026-64561.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: fs/notify: call exportfs_encode_fid with s_umount (CVE-2025-40237)
  * kernel: scsi: core: Wake up the error handler when final completions race against each other (CVE-2026-23110)
  * kernel: rtnetlink: add missing netlink_ns_capable() check for peer netns (CVE-2026-31692)
  * kernel: net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels (CVE-2026-46099)
  * kernel: futex: Drop CLONE_THREAD requirement for private default hash alloc (CVE-2026-52973)
  * kernel: dm log: fix out-of-bounds write due to region_count overflow (CVE-2026-53059)


</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-24"/>
          <updated date="2026-07-24"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2418829" id="2418829"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2436755" id="2436755"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2464093" id="2464093"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2481972" id="2481972"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492277" id="2492277"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2492413" id="2492413"></bugzilla>
          <cve public="20251204" href="https://access.redhat.com/security/cve/CVE-2025-40237" impact="Moderate" cwe="CWE-476" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H">CVE-2025-40237</cve>
          <cve public="20260204" href="https://access.redhat.com/security/cve/CVE-2026-23110" impact="Low" cwe="CWE-821" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-23110</cve>
          <cve public="20260430" href="https://access.redhat.com/security/cve/CVE-2026-31692" impact="Moderate" cwe="CWE-272" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-31692</cve>
          <cve public="20260527" href="https://access.redhat.com/security/cve/CVE-2026-46099" impact="Important" cwe="CWE-911" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-46099</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-52973" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-52973</cve>
          <cve public="20260624" href="https://access.redhat.com/security/cve/CVE-2026-53059" impact="Moderate" cwe="CWE-190" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H">CVE-2026-53059</cve>
          <cve public="20260804" href="https://www.redhat.com/security/data/cve/CVE-2026-64561.html" impact="Important" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-64561</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114001" comment="kernel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114002" comment="kernel-debug-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114003" comment="kernel-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114004" comment="kernel-debug is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114005" comment="kernel-debug-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114006" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114007" comment="kernel-debug-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114008" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114009" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114010" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114011" comment="kernel-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114012" comment="kernel-devel-matched is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114013" comment="kernel-headers is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114014" comment="kernel-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114015" comment="kernel-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114016" comment="kernel-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114017" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114018" comment="kernel-rt is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114019" comment="kernel-rt-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114020" comment="kernel-rt-debug is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114021" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114022" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114023" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114024" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114025" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114026" comment="kernel-rt-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114027" comment="kernel-rt-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114028" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114029" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114030" comment="kernel-tools is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114034" comment="perf is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114035" comment="python3-perf is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114036" comment="rtla is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114037" comment="rv is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114045" comment="kernel-64k is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114046" comment="kernel-64k-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896124" comment="kernel-rt-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114062" comment="kernel-rt-64k-debug-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896126" comment="kernel-rt-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114063" comment="kernel-rt-64k-debug-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896128" comment="kernel-rt-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114064" comment="kernel-rt-64k-debug-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896130" comment="kernel-rt-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114065" comment="kernel-rt-64k-debug-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896132" comment="kernel-rt-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114066" comment="kernel-rt-64k-debug-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896134" comment="kernel-rt-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114067" comment="kernel-rt-64k-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896136" comment="kernel-rt-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114068" comment="kernel-rt-64k-modules is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896138" comment="kernel-rt-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114069" comment="kernel-rt-64k-modules-core is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896140" comment="kernel-rt-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114070" comment="kernel-rt-64k-modules-extra is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896142" comment="kernel-rt-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114071" comment="kernel-cross-headers is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896144" comment="kernel-cross-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114072" comment="kernel-tools-libs-devel is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896146" comment="kernel-tools-libs-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114073" comment="libperf is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896148" comment="libperf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114074" comment="kernel-abi-stablelists is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896150" comment="kernel-abi-stablelists is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202645114075" comment="kernel-doc is earlier than 0:6.12.0-211.39.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896152" comment="kernel-doc is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202641895" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:41895: .NET 9.0 security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2026-47300" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47300"/>
        <reference ref_id="CVE-2026-47302" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47302"/>
        <reference ref_id="CVE-2026-47303" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47303"/>
        <reference ref_id="CVE-2026-47304" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-47304"/>
        <reference ref_id="CVE-2026-50524" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50524"/>
        <reference ref_id="CVE-2026-50526" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50526"/>
        <reference ref_id="CVE-2026-50527" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50527"/>
        <reference ref_id="CVE-2026-50528" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50528"/>
        <reference ref_id="CVE-2026-50646" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50646"/>
        <reference ref_id="CVE-2026-50648" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50648"/>
        <reference ref_id="CVE-2026-50649" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50649"/>
        <reference ref_id="CVE-2026-50650" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50650"/>
        <reference ref_id="CVE-2026-50651" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50651"/>
        <reference ref_id="CVE-2026-50659" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-50659"/>
        <reference ref_id="CVE-2026-56170" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-56170"/>
        <reference ref_id="CVE-2026-57108" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-57108"/>
        <reference ref_id="RHSA-2026:41895" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:41895"/>
        <reference ref_id="ALSA-2026:41895" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-41895.html"/>
        <description>.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.  

New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.119 and .NET Runtime 9.0.18.  

Security Fix(es):  

  * dotnet: SocketsHttpHandler Http2Connection - HTTP/2 SETTINGS/PING ACK flood causing OOM (CVE-2026-50651)
  * dotnet: .NET Core: Denial of Service via type confusion (CVE-2026-57108)
  * ASP.NET Core: ASP.NET Core: Denial of Service via uncontrolled resource allocation (CVE-2026-56170)
  * ASP.NET Core: ASP.NET Core: Privilege Escalation via Incorrect Authentication Algorithm (CVE-2026-47300)
  * ASP.NET Core: ASP.NET Core: Privilege Elevation via Authentication Bypass (CVE-2026-47303)
  * dotnet: .NET Security Feature Bypass Vulnerability (CVE-2026-47304)
  * dotnet: .NET: Denial of Service vulnerability due to uncontrolled resource allocation (CVE-2026-47302)
  * dotnet: .NET Framework: Privilege escalation via code injection (CVE-2026-50650)
  * dotnet: .NET: Security feature bypass due to incorrect authorization (CVE-2026-50528)
  * dotnet: .NET: Local code execution via deserialization of untrusted data (CVE-2026-50649)
  * dotnet: .NET: Local tampering via improper link resolution (CVE-2026-50526)
  * dotnet: .NET Framework: Local Code Execution via Protection Mechanism Failure (CVE-2026-50646)
  * dotnet: .NET Framework: Denial of Service via network-based buffer overflow (CVE-2026-50527)
  * dotnet: .NET Framework: Remote Denial of Service due to uncontrolled resource allocation (CVE-2026-50648)
  * .NET: .NET: Network Spoofing Vulnerability (CVE-2026-50659)
  * dotnet: .NET Framework: Denial of Service via improper input validation (CVE-2026-50524)


Bug Fix(es) and Enhancement(s):  

  * Update .NET 9.0 to SDK 9.0.119 and Runtime 9.0.18 [almalinux-10.2.z] (JIRA:AlmaLinux-192473)
  * dotnet9.0: Reduce time to detect hanging builds during .NET RPM builds (c10s) [almalinux-10.2.z] (JIRA:AlmaLinux-192330)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2499217" id="2499217"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500109" id="2500109"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500189" id="2500189"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500492" id="2500492"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500502" id="2500502"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500509" id="2500509"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500515" id="2500515"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500556" id="2500556"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500562" id="2500562"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500563" id="2500563"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500565" id="2500565"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500577" id="2500577"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500581" id="2500581"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500587" id="2500587"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2500593" id="2500593"></bugzilla>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-47300" impact="Important" cwe="CWE-303" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-47300</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-47302" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-47302</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-47303" impact="Important" cwe="CWE-472" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-47303</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-47304" impact="Important" cwe="CWE-347" cvss3="CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H">CVE-2026-47304</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50524" impact="Important" cwe="CWE-1287" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50524</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50526" impact="Moderate" cwe="CWE-59" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-50526</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50527" impact="Important" cwe="CWE-120" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50527</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50528" impact="Important" cwe="CWE-551" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N">CVE-2026-50528</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50646" impact="Important" cwe="CWE-807" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-50646</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50648" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50648</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50649" impact="Important" cwe="CWE-502" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-50649</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50650" impact="Important" cwe="CWE-94" cvss3="CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H">CVE-2026-50650</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50651" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-50651</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-50659" impact="Moderate" cwe="CWE-838" cvss3="CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N">CVE-2026-50659</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-56170" impact="Important" cwe="CWE-770" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-56170</cve>
          <cve public="20260714" href="https://access.redhat.com/security/cve/CVE-2026-57108" impact="Important" cwe="CWE-843" cvss3="CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H">CVE-2026-57108</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895001" comment="aspnetcore-runtime-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601002" comment="aspnetcore-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895002" comment="aspnetcore-runtime-dbg-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601004" comment="aspnetcore-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895003" comment="aspnetcore-targeting-pack-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601006" comment="aspnetcore-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895004" comment="dotnet-apphost-pack-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601008" comment="dotnet-apphost-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895005" comment="dotnet-hostfxr-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601012" comment="dotnet-hostfxr-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895006" comment="dotnet-runtime-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601014" comment="dotnet-runtime-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895007" comment="dotnet-runtime-dbg-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601016" comment="dotnet-runtime-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895008" comment="dotnet-sdk-9.0 is earlier than 0:9.0.119-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601018" comment="dotnet-sdk-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895009" comment="dotnet-sdk-aot-9.0 is earlier than 0:9.0.119-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601020" comment="dotnet-sdk-aot-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895010" comment="dotnet-sdk-dbg-9.0 is earlier than 0:9.0.119-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601022" comment="dotnet-sdk-dbg-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895011" comment="dotnet-targeting-pack-9.0 is earlier than 0:9.0.18-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601024" comment="dotnet-targeting-pack-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895012" comment="dotnet-templates-9.0 is earlier than 0:9.0.119-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601026" comment="dotnet-templates-9.0 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895013" comment="netstandard-targeting-pack-2.1 is earlier than 0:9.0.119-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601028" comment="netstandard-targeting-pack-2.1 is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202641895014" comment="dotnet-sdk-9.0-source-built-artifacts is earlier than 0:9.0.119-1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20257601030" comment="dotnet-sdk-9.0-source-built-artifacts is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.almalinux.alsa:def:202649211" version="635" class="patch">
      <metadata>
        <title>ALSA-2026:49211: kernel security, bug fix, and enhancement update (Important)</title>
        <reference ref_id="CVE-2025-68211" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2025-68211"/>
        <reference ref_id="CVE-2026-46303" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-46303"/>
        <reference ref_id="CVE-2026-64530" source="CVE" ref_url="https://access.redhat.com/security/cve/CVE-2026-64530"/>
        <reference ref_id="RHSA-2026:49211" source="RHSA" ref_url="https://access.redhat.com/errata/RHSA-2026:49211"/>
        <reference ref_id="ALSA-2026:49211" source="ALSA" ref_url="https://errata.almalinux.org/10/ALSA-2026-49211.html"/>
        <description>The kernel packages contain the Linux kernel, the core of any Linux operating system.  

Security Fix(es):  

  * kernel: ksm: use range-walk function to jump over holes in scan_get_next_rmap_item (CVE-2025-68211)
  * kernel: isofs: validate Rock Ridge CE continuation extent against volume size (CVE-2026-46303)
  * kernel: net: sched: UAF via missing handler for TC_ACT_CONSUMED in tcf_qevent_handle ()


Bug Fix(es) and Enhancement(s):  

  * [DELL 10.2 FEAT] [LATE-ADD] - Include support for Ghostrider PTL mini config SKU with Realtek IC Solution [almalinux-10.2.z] (JIRA:AlmaLinux-185669)
  * dpll: fix NULL pointer dereference in dpll_msg_add_pin_ref_sync() [almalinux-10.2.z] (JIRA:AlmaLinux-212063)


For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
</description>
        <advisory from="packager@almalinux.org">
          <severity>Important</severity>
          <rights>Copyright 2026 AlmaLinux OS</rights>
          <issued date="2026-07-31"/>
          <updated date="2026-07-31"/>
          <affected_cpe_list>
            <cpe>cpe:/a:almalinux:almalinux:10</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::appstream</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::powertools</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::highavailability</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::nfv</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::realtime</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::resilientstorage</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::sap_hana</cpe>
            <cpe>cpe:/a:almalinux:almalinux:10::supplementary</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10</cpe>
            <cpe>cpe:/o:almalinux:almalinux:10::baseos</cpe>
          </affected_cpe_list>
          <bugzilla href="https://bugzilla.redhat.com/2422696" id="2422696"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2486471" id="2486471"></bugzilla>
          <bugzilla href="https://bugzilla.redhat.com/2504052" id="2504052"></bugzilla>
          <cve public="20251216" href="https://access.redhat.com/security/cve/CVE-2025-68211" impact="Moderate" cwe="CWE-606" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2025-68211</cve>
          <cve public="20260608" href="https://access.redhat.com/security/cve/CVE-2026-46303" impact="Moderate" cwe="CWE-125" cvss3="CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H">CVE-2026-46303</cve>
          <cve public="20260726" href="https://access.redhat.com/security/cve/CVE-2026-64530" impact="Moderate" cwe="CWE-825" cvss3="CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H">CVE-2026-64530</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion test_ref="oval:org.almalinux.alsa:tst:20250001001" comment="AlmaLinux must be installed"/>
        <criteria operator="AND">
          <criterion test_ref="oval:org.almalinux.alsa:tst:20250001002" comment="AlmaLinux 10 is installed"/>
          <criteria operator="OR">
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211001" comment="kernel-tools is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896094" comment="kernel-tools is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211002" comment="kernel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896006" comment="kernel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211003" comment="kernel-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896036" comment="kernel-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211004" comment="kernel-debug is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896038" comment="kernel-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211005" comment="kernel-debug-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896040" comment="kernel-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211006" comment="kernel-debug-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896042" comment="kernel-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211007" comment="kernel-debug-devel-matched is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896044" comment="kernel-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211008" comment="kernel-debug-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896046" comment="kernel-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211009" comment="kernel-debug-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896048" comment="kernel-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211010" comment="kernel-debug-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896050" comment="kernel-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211011" comment="kernel-debug-uki-virt is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896052" comment="kernel-debug-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211012" comment="kernel-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896054" comment="kernel-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211013" comment="kernel-devel-matched is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896056" comment="kernel-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211014" comment="kernel-headers is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896058" comment="kernel-headers is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211015" comment="kernel-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896060" comment="kernel-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211016" comment="kernel-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896062" comment="kernel-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211017" comment="kernel-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896064" comment="kernel-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211018" comment="kernel-modules-extra-matched is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:202520095018" comment="kernel-modules-extra-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211019" comment="kernel-rt is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896066" comment="kernel-rt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211020" comment="kernel-rt-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896068" comment="kernel-rt-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211021" comment="kernel-rt-debug is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896070" comment="kernel-rt-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211022" comment="kernel-rt-debug-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896072" comment="kernel-rt-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211023" comment="kernel-rt-debug-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896074" comment="kernel-rt-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211024" comment="kernel-rt-debug-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896078" comment="kernel-rt-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211025" comment="kernel-rt-debug-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896080" comment="kernel-rt-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211026" comment="kernel-rt-debug-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896082" comment="kernel-rt-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211027" comment="kernel-rt-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896084" comment="kernel-rt-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211028" comment="kernel-rt-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896088" comment="kernel-rt-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211029" comment="kernel-rt-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896090" comment="kernel-rt-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211030" comment="kernel-rt-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896092" comment="kernel-rt-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211031" comment="kernel-tools-libs is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896096" comment="kernel-tools-libs is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211032" comment="kernel-uki-virt is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896098" comment="kernel-uki-virt is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211033" comment="kernel-uki-virt-addons is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896100" comment="kernel-uki-virt-addons is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211034" comment="perf is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896102" comment="perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211035" comment="python3-perf is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896104" comment="python3-perf is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211036" comment="rtla is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896002" comment="rtla is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211037" comment="rv is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896004" comment="rv is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211038" comment="kernel-zfcpdump is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896106" comment="kernel-zfcpdump is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211039" comment="kernel-zfcpdump-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896108" comment="kernel-zfcpdump-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211040" comment="kernel-zfcpdump-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896110" comment="kernel-zfcpdump-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211041" comment="kernel-zfcpdump-devel-matched is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896112" comment="kernel-zfcpdump-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211042" comment="kernel-zfcpdump-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896114" comment="kernel-zfcpdump-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211043" comment="kernel-zfcpdump-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896116" comment="kernel-zfcpdump-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211044" comment="kernel-zfcpdump-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896118" comment="kernel-zfcpdump-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211045" comment="kernel-64k is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896008" comment="kernel-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211046" comment="kernel-64k-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896010" comment="kernel-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211047" comment="kernel-64k-debug is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896012" comment="kernel-64k-debug is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211048" comment="kernel-64k-debug-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896014" comment="kernel-64k-debug-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211049" comment="kernel-64k-debug-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896016" comment="kernel-64k-debug-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211050" comment="kernel-64k-debug-devel-matched is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896018" comment="kernel-64k-debug-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211051" comment="kernel-64k-debug-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896020" comment="kernel-64k-debug-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211052" comment="kernel-64k-debug-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896022" comment="kernel-64k-debug-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211053" comment="kernel-64k-debug-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896024" comment="kernel-64k-debug-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211054" comment="kernel-64k-devel is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896026" comment="kernel-64k-devel is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211055" comment="kernel-64k-devel-matched is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896028" comment="kernel-64k-devel-matched is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211056" comment="kernel-64k-modules is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896030" comment="kernel-64k-modules is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211057" comment="kernel-64k-modules-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896032" comment="kernel-64k-modules-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211058" comment="kernel-64k-modules-extra is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896034" comment="kernel-64k-modules-extra is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211059" comment="kernel-rt-64k is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896120" comment="kernel-rt-64k is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211060" comment="kernel-rt-64k-core is earlier than 0:6.12.0-211.42.1.el10_2"/>
              <criterion test_ref="oval:org.almalinux.alsa:tst:20259896122" comment="kernel-rt-64k-core is signed with AlmaLinux OS 10 key (dee5c11cc2a1e572)"/>
            </criteria>
            <criteria operator="AND">
              <criterion test_ref="oval:org.almalinux.alsa:tst:202649211061" comment="kernel-rt-64k-debug is earlier than 0:6.12.0-211.42.1.el10_2"/>
            