RHSA-2025:7592: Important: yggdrasil security update
Important: yggdrasil security update
Other sources
yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.Security Fix(es): yggdrasil: Local privilege escalation in yggdrasil (CVE-2025-3931) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:7592?
The severity of RHSA-2025:7592 is classified as important.
How do I fix RHSA-2025:7592?
To fix RHSA-2025:7592, update yggdrasil to version 0.4.5-3.el10_0 or higher.
Which systems are affected by RHSA-2025:7592?
RHSA-2025:7592 affects various versions of the yggdrasil package across multiple architectures, including x86_64 and ppc64le.
Is RHSA-2025:7592 related to the MQTT protocol?
Yes, RHSA-2025:7592 involves yggdrasil, which operates as a daemon that subscribes to MQTT topics.
What type of applications use yggdrasil as indicated in RHSA-2025:7592?
Yggdrasil is used in applications that need to route data received from MQTT brokers to appropriate worker processes.