Aggregator
DSA-6294-1 libgcrypt20 - security update
djvulibre-3.5.30-1.fc44
- djvulibre-3.5.30-1.fc44
Update to 3.5.30.
djvulibre-3.5.30-1.fc42
- djvulibre-3.5.30-1.fc42
Update to 3.5.30.
djvulibre-3.5.30-1.fc43
- djvulibre-3.5.30-1.fc43
Update to 3.5.30.
USN-8294-1: PostgreSQL vulnerabilities
kernel-6.19.14-108.fc42
- kernel-6.19.14-108.fc42
The 6.19.14-108 stable kernel update contains a couple if important security fixes.
xrdp-0.10.6-2.fc44
- xrdp-0.10.6-2.fc44
Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.
xrdp-0.10.6-2.fc42
- xrdp-0.10.6-2.fc42
Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.
xrdp-0.10.6-2.el9
- xrdp-0.10.6-2.el9
Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.
xrdp-0.10.6-2.fc43
- xrdp-0.10.6-2.fc43
Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.
xrdp-0.10.6-2.el8
- xrdp-0.10.6-2.el8
Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.
haveged-1.9.22-1.fc43
- haveged-1.9.22-1.fc43
Update to 1.9.22 — fix systemd sandboxing: add ReadWritePaths=/dev/shm for semaphore creation
Backport fix for CVE-2026-41054: privilege escalation via command socket
haveged-1.9.22-1.fc42
- haveged-1.9.22-1.fc42
Update to 1.9.22 — fix systemd sandboxing: add ReadWritePaths=/dev/shm for semaphore creation
Backport fix for CVE-2026-41054: privilege escalation via command socket
USN-8293-1: Bind vulnerabilities
kernel-7.0.9-205.fc44
- kernel-7.0.9-205.fc44
The 7.0.9-105/205 stable kernel updates contain a couple if important security fixes.
kernel-7.0.9-105.fc43
- kernel-7.0.9-105.fc43
The 7.0.9-105/205 stable kernel updates contain a couple if important security fixes.
bind-9.18.49-1.fc43 bind-dyndb-ldap-11.11-13.fc43
- bind-9.18.49-1.fc43
- bind-dyndb-ldap-11.11-13.fc43
- Limit resolver server list size. (CVE-2026-3592)
- Fix GSS-API resource leak. (CVE-2026-3039)
- Disable recursion, UPDATE, and NOTIFY for non-IN views. (CVE-2026-5946)
- Avoid unbounded recursion loop. (CVE-2026-5950)
- Fix outgoing zone transfers' quota issue.
- Fix CPU spikes and slow queries when cache approaches memory limit.
- Fix named crash when processing SIG records in dynamic updates.
- Fix rndc modzone behavior for a zone in named.conf.
- Fix zone verification of NSEC3 signed zones.
- Prevent a crash when using both dns64 and filter-aaaa.
- Fixed an assertion failure when processing catalog zones.
- Prevent malicious DNSSEC zones from exhausting validator CPU.
- Fix rndc-confgen aborting on HMAC-SHA-384/512 keys above 512 bits.
- Prevent crafted queries from degrading RRL performance.
- Fix a bug in allow-query/allow-transfer catalog zone custom properties.
- Fix a memory leak issue in catalog zones.
- Fix suppressed missing-glue check in named-checkzone.
- Reject record sets too large to serve in DNS.
Source: https://downloads.isc.org/isc/bind9/9.18.49/doc/arm/html/notes.html#notes-for-bind-9-18-49
bind-9.18.49-1.fc44 bind-dyndb-ldap-11.11-15.fc44
- bind-9.18.49-1.fc44
- bind-dyndb-ldap-11.11-15.fc44
- Limit resolver server list size. (CVE-2026-3592)
- Fix GSS-API resource leak. (CVE-2026-3039)
- Disable recursion, UPDATE, and NOTIFY for non-IN views. (CVE-2026-5946)
- Avoid unbounded recursion loop. (CVE-2026-5950)
- Fix outgoing zone transfers' quota issue.
- Fix CPU spikes and slow queries when cache approaches memory limit.
- Fix named crash when processing SIG records in dynamic updates.
- Fix rndc modzone behavior for a zone in named.conf.
- Fix zone verification of NSEC3 signed zones.
- Prevent a crash when using both dns64 and filter-aaaa.
- Fixed an assertion failure when processing catalog zones.
- Prevent malicious DNSSEC zones from exhausting validator CPU.
- Fix rndc-confgen aborting on HMAC-SHA-384/512 keys above 512 bits.
- Prevent crafted queries from degrading RRL performance.
- Fix a bug in allow-query/allow-transfer catalog zone custom properties.
- Fix a memory leak issue in catalog zones.
- Fix suppressed missing-glue check in named-checkzone.
- Reject record sets too large to serve in DNS.
Source: https://downloads.isc.org/isc/bind9/9.18.49/doc/arm/html/notes.html#notes-for-bind-9-18-49
pdns-5.0.5-1.el10_3
- pdns-5.0.5-1.el10_3
- Update to 5.0.5
- Fix for CVE-2026-42000, CVE-2026-42001, CVE-2026-42002, CVE-2026-41999, CVE-2026-42396
Security Advisory: https://doc.powerdns.com/authoritative/security-advisories/powerdns-advisory-2026-06.html