Fedora Account System
Red Hat Associate
Red Hat Customer
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
CVE-2026-32144 (OCSP designated-responder authorization bypass in public_key) only affects Erlang/OTP ≥ 27.0, as confirmed by the upstream security advisory: https://github.com/erlang/otp/security/advisories/GHSA-gxrm-pf64-99xm Red Hat and the Fedora community have switched Erlang packaging for EPEL to the CentOS Messaging SIG (installable via `dnf install centos-release-messaging`). The CentOS Messaging SIG ships Erlang 26.x only, which is explicitly listed as unaffected by this CVE. Closing as NOTABUG.