1 week 5 days ago
FEDORA-2026-572cf2642d
Packages in this update:
Update description:
Security fixes for CVE-2026-28417, CVE-2026-28418, CVE-2026-28419, CVE-2026-28420, CVE-2026-28421, CVE-2026-28422
1 week 5 days ago
It was discovered that Qt did not correctly handle OpenSSL's error queue.
An attacker could possibly use this issue to cause a denial of service.
This issue was only addressed in Ubuntu 20.04 LTS. (CVE-2020-13962)
It was discovered that Qt incorrectly handled certain XBM image files. If a
user or automated system were tricked into opening a specially crafted PPM
file, a remote attacker could cause Qt to crash, resulting in a denial of
service. This issue was only addressed in Ubuntu 16.04 LTS and
Ubuntu 20.04 LTS. (CVE-2020-17507)
It was discovered that Qt did not correctly handle executing specific
binaries. If a user or automated system were tricked into executing a
binary at a specific file path, an attacker could cause a denial of
service or execute arbitrary code. This issue was only addressed in
Ubuntu 20.04 LTS. (CVE-2022-25255)
It was discovered that Qt did not correctly handle certain integer
arithmetic. An attacker could possibly use this issue to cause a denial
of service. This issue was only addressed in Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2023-51714)
It was discovered that Qt did not correctly handle certain encrypted
connections. An attacker could possibly use this issue to leak sensitive
information. This issue was only addressed in Ubuntu 24.04 LTS.
(CVE-2024-39936)
1 week 5 days ago
It was discovered that less incorrectly handled certain file names. An
attacker could possibly use this issue to cause a denial of service or
execute arbitrary commands.
1 week 5 days ago
Carter Sande discovered that Zutty did not correctly echo invalid input to
the console on DECRQSS. An attacker could possibly use this issue to
execute arbitrary commands.
1 week 5 days ago
It was discovered that Bleach did not properly sanitize URI attributes
containing character entities. An attacker could possibly use this issue
to construct a URI with a disallowed scheme that would bypass
sanitization, leading to cross-site scripting. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-7753)
Yaniv Nizry discovered that Bleach was vulnerable to a mutation
cross-site scripting issue when sanitizing HTML with the noscript tag
and a raw tag in the allowed tags list. An attacker could possibly
use this issue to inject malicious content, leading to cross-site
scripting. This issue only affected Ubuntu 18.04 LTS. (CVE-2020-6802)
Yaniv Nizry discovered that Bleach was vulnerable to a mutation
cross-site scripting issue when sanitizing HTML with RCDATA together
with svg or math tags in the allowed tags list. An attacker could
possibly use this issue to inject malicious content, leading to
cross-site scripting. (CVE-2020-6816)
It was discovered that Bleach incorrectly handled parsing of style
attributes when sanitizing HTML. An attacker could possibly use this
issue to perform a regular expression denial of service, leading to
excessive resource consumption. (CVE-2020-6817)
Yaniv Nizry and Michał Bentkowski discovered that Bleach was vulnerable
to a mutation cross-site scripting issue when sanitizing HTML with
certain combinations of allowed tags. An attacker could possibly use
this issue to inject malicious content, leading to cross-site scripting.
(CVE-2021-23980)
1 week 5 days ago
1 week 5 days ago
1 week 5 days ago
1 week 5 days ago
Version:next-20260305 (linux-next)
Released:2026-03-05
1 week 5 days ago
FEDORA-2026-c8cb37d552
Packages in this update:
- SDL3_sound-3.0.0~20260117gitb00e4a3-1.fc44
Update description:
Latest snapshot from 3.0 branch. Fixes CVE-2025-14369.
1 week 5 days ago
FEDORA-2026-243f5046dc
Packages in this update:
- SDL3_sound-3.0.0~20260117gitb00e4a3-1.fc43
Update description:
Latest snapshot from 3.0 branch. Fixes CVE-2025-14369.
1 week 5 days ago
FEDORA-2026-6887ad5a22
Packages in this update:
- SDL3_sound-3.0.0~20260117gitb00e4a3-1.fc45
Update description:
Automatic update for SDL3_sound-3.0.0~20260117gitb00e4a3-1.fc45.
Changelog
* Thu Mar 5 2026 Dominik 'Rathann' Mierzejewski <
dominik@greysector.net> - 3.0.0~20260117gitb00e4a3-1
- update to 20260117 snapshot from main (3.0) branch
- fixes CVE-2025-14369 (resolves rhbz#2431178)
- fixes rpmbuild -bi --short-circuit
1 week 5 days ago
FEDORA-2026-bfa5bd0004
Packages in this update:
- SDL2_sound-2.0.5^20260117git1be041b-1.fc42
Update description:
Latest upstream snapshot from stable-2.0 branch. Fixes CVE-2025-14369 in bundled dr_flac.
1 week 5 days ago
FEDORA-2026-6ea6f0a56b
Packages in this update:
- SDL2_sound-2.0.5^20260117git1be041b-1.fc43
Update description:
Latest upstream snapshot from stable-2.0 branch. Fixes CVE-2025-14369 in bundled dr_flac.
1 week 5 days ago
FEDORA-2026-9b4cb66a86
Packages in this update:
- SDL2_sound-2.0.5^20260117git1be041b-1.fc44
Update description:
Latest upstream snapshot from stable-2.0 branch. Fixes CVE-2025-14369 in bundled dr_flac.
1 week 5 days ago
FEDORA-2026-c52532a74b
Packages in this update:
- SDL2_sound-2.0.5^20260117git1be041b-1.fc45
Update description:
Automatic update for SDL2_sound-2.0.5^20260117git1be041b-1.fc45.
Changelog
* Thu Mar 5 2026 Dominik Mierzejewski <
dominik@greysector.net> - 2.0.5^20260117git1be041b-1
- update to 20260117 snapshot from stable-2.0 branch
- fixes CVE-2025-14369 (resolves rhbz#2431177)
- fixes rpmbuild -bi --short-circuit
1 week 5 days ago
FEDORA-2026-cc5417599b
Packages in this update:
Update description:
Update to 1.88.0
1 week 6 days ago
USN-8071-1 fixed a vulnerability in nss. This update provides the
corresponding fix for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
and Ubuntu 20.04 LTS.
Original advisory details:
It was discovered that NSS incorrectly handled memory when performing
certain GHASH operations. A remote attacker could use this issue to cause
NSS to crash, resulting in a denial of service, or possibly execute
arbitrary code.
1 week 6 days ago
1 week 6 days ago
FEDORA-2026-367d9a0b61
Packages in this update:
Update description:
Update NSS to 3.121.0