RHSA-2026:59568: Important: sg3_utils security update
Important: sg3utils security update
Other sources
The sg3utils packages provide command-line utilities for devices that use the Small Computer System Interface (SCSI) command sets.Security Fix(es): sg3utils: sg3utils: arbitrary command execution via udev property injection in sginq --export (CVE-2026-16313) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
sg3_utilsto a version that resolves this vulnerability.Patch CVE-2026-16313
Event History
Frequently Asked Questions
Which Red Hat offerings are covered by this advisory?
The advisory covers Red Hat Enterprise Linux for x86_64 Update Services for SAP Solutions, Red Hat Enterprise Linux Server for Power LE Update Services for SAP Solutions, Red Hat Enterprise Linux for x86_64 Extended Life Cycle Long Life, and Red Hat Enterprise Linux Server TUS.