Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
RHSA-2025:10618
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:10618
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:10618.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2025:10618
Upstream
CVE-2024-23337
CVE-2025-48060
Published
2025-07-09T10:05:07Z
Modified
2025-07-31T10:08:30Z
Severity
5.5 (Medium)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: jq security update
Details
References
https://access.redhat.com/errata/RHSA-2025:10618
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2367807
https://bugzilla.redhat.com/show_bug.cgi?id=2367842
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_10618.json
https://access.redhat.com/security/cve/CVE-2024-23337
https://www.cve.org/CVERecord?id=CVE-2024-23337
https://nvd.nist.gov/vuln/detail/CVE-2024-23337
https://github.com/jqlang/jq/commit/de21386681c0df0104a99d9d09db23a9b2a78b1e
https://github.com/jqlang/jq/issues/3262
https://github.com/jqlang/jq/security/advisories/GHSA-2q6r-344g-cx46
https://access.redhat.com/security/cve/CVE-2025-48060
https://www.cve.org/CVERecord?id=CVE-2025-48060
https://nvd.nist.gov/vuln/detail/CVE-2025-48060
https://github.com/jqlang/jq/security/advisories/GHSA-p7rr-28xf-3m5w
Affected packages
Red Hat:enterprise_linux:8::appstream
/
jq
Package
Name
jq
Purl
pkg:rpm/redhat/jq
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::appstream
/
jq-debuginfo
Package
Name
jq-debuginfo
Purl
pkg:rpm/redhat/jq-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::appstream
/
jq-debugsource
Package
Name
jq-debugsource
Purl
pkg:rpm/redhat/jq-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::appstream
/
jq-devel
Package
Name
jq-devel
Purl
pkg:rpm/redhat/jq-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::crb
/
jq
Package
Name
jq
Purl
pkg:rpm/redhat/jq
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::crb
/
jq-debuginfo
Package
Name
jq-debuginfo
Purl
pkg:rpm/redhat/jq-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::crb
/
jq-debugsource
Package
Name
jq-debugsource
Purl
pkg:rpm/redhat/jq-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
Red Hat:enterprise_linux:8::crb
/
jq-devel
Package
Name
jq-devel
Purl
pkg:rpm/redhat/jq-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6-11.el8_10
RHSA-2025:10618 - OSV