{
  "cves": [
    "CVE-2025-13465",
    "CVE-2025-15284",
    "CVE-2026-23745",
    "CVE-2026-23950",
    "CVE-2026-24842"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[2.26-7]\n- Fix pccs npm security flaws\n\n[2.26-6]\n- Port to pycryptography and pyasn1 and make keyring optional\n\n[2.26-5]\n- Sync specfile changes from Fedora\n\n[2.26-4]\n- Drop sgx-mpa dep from sgx-pccs\n\n[2.26-3]\n- Add scriptlets for PCCS\n\n[2.26-2]\n- Enable pccsadmin everywhere\n\n[2.26-1]\n- Update to SGX 2.26 / DCAP 1.23, adding PCCS service\n\n[2.25-7]\n- Trigger udev to set perms on /dev/sgx_provision\n\n[2.25-6]\n- Temporarily disable automatic tier1 gating\n\n[2.25-5]\n- Adapt qgs.service for SELinux policy and sock perms",
  "id": "ELSA-2026-18868",
  "ovalId": "oval:com.oracle.elsa:def:202618868",
  "source": "oracle_linux",
  "title": "ELSA-2026-18868:  linux-sgx security update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-18868.html"
}