RHSA-2026:75579: Important: sudo security update
Reporting by Red Hat Security AdvisoriesRead the original at access.redhat.com
Executive Summary
Facts Only
* A package named sudo-python-plugin-debuginfo-1.9.17-10.p2.el102.7.s390x.rpm exists with SHA-256: dfa17266ca9c64828c678054e0b3328e48196e6c37292fa3452c08e3c8a169f3.
* A package named sudo-1.9.17-10.p2.el102.7.s390x.rpm exists with SHA-256: 2da3855c25e090bef30cf4fc6c13bbd5e85c211e5f67349e7eca9ddc46d279fe.
* A package named sudo-1.9.17-10.p2.el102.7.ppc64le.rpm exists with SHA-256: 57fbb3ec3518233b93d17aad4b16d79dc5301bfb438196832ffc1b66da0d32fc.
* A package named sudo-debuginfo-1.9.17-10.p2.el102.7.ppc64le.rpm exists with SHA-256: 360f6db8de527e4e37358f86b490ee3de842687db903d0554ebf46e32ccfd860.
* A package named sudo-debugsource-1.9.17-10.p2.el102.7.ppc64le.rpm exists with SHA-256: 2323e72c7717fb5abeae7b1c79fb8ce3b051e10790072c38a0bf4670c6c2f907.
* A package named sudo-python-plugin-1.9.17-10.p2.el102.7.ppc64le.rpm exists with SHA-256: ae1efa0b7d9047002f9bb5108da1461ba647b8ba205311bf61a68399190ae6b7.
* A package named sudo-python-plugin-debuginfo-1.9.17-10.p2.el102.7.ppc64le.rpm exists with SHA-256: 119f4ed384bda587f919080db8300ce93bb39e6f30088924d6a3c61b00690d5c.
* A package named sudo-1.9.17-10.p2.el102.7.x8664.rpm exists with SHA-256: 105f6d77cf825f5da07ac0212fb4d7e3a5bd3f40dc0272eb45e54f18a31e364a.
* A package named sudo-debugsource-1.9.17-10.p2.el102.7.x8664.rpm exists with SHA-256: 803fa945407d6c80c265fc158c753b0378cc5b5614dba1dd9b362190f82f5428.
* A package named sudo-python-plugin-1.9.17-10.p2.el102.7.x8664.rpm exists with SHA-256: e985725fd50a4caf09da3373f081080dc35d9e2d3bea58b229450a3323f8987f.
* A package named sudo-python-plugin-debuginfo-1.9.17-10.p2.el102.7.x8664.rpm exists with SHA-256: 537fe113ccbd162b413ef299f5641298c2b6671289184d209aa8dd413a92a1da.
* A package named sudo-python-plugin-debuginfo-1.9.17-10.p2.el102.7.x8664.rpm exists with SHA-256: 537fe113ccbd162b413ef299f5641298c2b6671289184d209aa8dd413a92a1da.
* A package named sudo-1.9.17-10.p2.el102.7.aarch64.rpm exists with SHA-256: 47162036cb8b1977069a45dcbaae6c90772a34241e0a368a6eef46d2d156689e.
* A package named sudo-debuginfo-1.9.17-10.p2.el102.7.aarch64.rpm exists with SHA-256: 44ecce1ce37ed1ab0d8a97ba14c8381dd45db8980b6882f91755e46e62913cdb.
* A package named sudo-debugsource-1.9.17-10.p2.el102.7.aarch64.rpm exists with SHA-256: 4dcbe2c6771d4f7eaf483a732ed4335369eaf114d3cf0781510a008feb4ada4e.
* A package named sudo-python-plugin-1.9.17-10.p2.el102.7.aarch64.rpm exists with SHA-256: 0a030aa31bcc571f36aba7e3620281866ff0ef0df2312708d5d29e84b1344e8f.
* A package named sudo-python-plugin-debuginfo-1.9.17-10.p2.el102.7.aarch64.rpm exists with SHA-256: 66cdc38ad1d01a1aae05caac4d61ccfaf50522d81093862fa33ea9b1a0ee043c.
Full Take
The presentation of system distribution artifacts reveals a comprehensive effort to ensure software functionality across multiple complex hardware architectures, including x8664, ppc64le (PowerPC), s390x (IBM zSystems), and aarch64 (ARM64). The existence of mirrored debugsource and debuginfo RPMs for each variant suggests a meticulous commitment to debugging and source availability across diverse systems.
The pattern observed is the systematic decomposition and packaging of software components specifically tailored for highly specialized, non-standard hardware environments. This implies that ensuring the operational integrity of complex software ecosystems relies heavily on artifact management specific to the target architecture rather than generalized binaries. This process shifts the focus from simple distribution to granular, context-aware assembly. The implicit assumption is that correct functionality depends entirely on correctly mapping the compiled application to its specific instruction set and system calls.
The implication for agency is that true system sovereignty requires not just having software, but possessing the precise manifest of how that software interacts with the underlying reality. If an operating system or utility operates across such disparate architectures, the complexity of the package structure becomes a critical point of leverage—the ability to correctly assemble and verify these components is the mechanism for control. The missing element in this presentation is not the data itself, but the political and operational context surrounding which architecture definitions take precedence in deployment decisions, which dictates who can achieve this sovereignty.
What assumptions about universal deployability are made when artifacts are generated across such distinct hardware paradigms? How does the structure of these package repositories reflect or constrain the ability of an end-user to independently verify that the delivered software is functionally identical across all supported environments? What structures exist to manage the inherent tension between generalized software design and machine-specific implementation details?
From the original · Red Hat Security Advisories
Synopsis Important: sudo security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for sudo is now available for Red Hat Enterprise Linux 10.Read the full story at access.redhat.com
