Hacktoberfest 2026: the issues maintainers tagged for October, open and beginner-friendly. Browse Hacktoberfest issues

Release goose-1.38.0-1.el10_2 ALSA-2026:67593

Open Beginner friendly
#3,564 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
1/5
Estimated time
Under an hour
Newbie friendliness
60/100
Issue type
Documentation
Clarity
Clearly specified
Activity status
Active
Domain
release

Research direction

This is a release advisory for goose-1.38.0-1.el10_2. The issue describes a security fix for CVE-2026-18140. To start, review the linked advisory at https://access.AlmaLinux.com/articles/11258. The work involves updating the package documentation or release notes. Check the repository for existing release scripts or documentation files to understand the format. The task is to ensure the advisory information is correctly reflected in the project's update records.

Written by the indexing model from the issue text.

Description

goose bug fix and enhancement update
Severity: Important
Description
For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.AlmaLinux.com/articles/11258
Security Fix(es):

  • goose: aws-smithy-json: Denial of Service via uncontrolled recursion with deeply nested JSON (CVE-2026-18140)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected packages:
goose-1.38.0-1.el10_2.x86_64
goose-1.38.0-1.el10_2.s390x
goose-1.38.0-1.el10_2.ppc64le
goose-1.38.0-1.el10_2.aarch64
goose-1.38.0-1.el10_2.x86_64_v2

Dominant language
No language data
Stars
2
Forks
0
PR merge metrics
No merged PRs in 30d

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from AlmaLinux/updates

All issues in AlmaLinux/updates

Similar issues

More Release issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.