Aggregator
xen-4.20.1-8.fc43
- xen-4.20.1-8.fc43
Incorrect removal of permissions on PCI device unplug [XSA-476, CVE-2025-58149]
x86: Incorrect input sanitisation in Viridian hypercalls [XSA-475, CVE-2025-58147, CVE-2025-58148]
unbound-1.24.1-1.fc41
- unbound-1.24.1-1.fc41
Fix CVE-2025-11411 (possible domain hijacking attack), reported by Yuxiao Wu, Yunyi Zhang, Baojun Liu and Haixin Duan from Tsinghua University.
unbound-1.24.1-1.fc42
- unbound-1.24.1-1.fc42
Fix CVE-2025-11411 (possible domain hijacking attack), reported by Yuxiao Wu, Yunyi Zhang, Baojun Liu and Haixin Duan from Tsinghua University.
bind-9.18.41-1.fc42 bind-dyndb-ldap-11.11-7.fc42
- bind-9.18.41-1.fc42
- bind-dyndb-ldap-11.11-7.fc42
- DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677)
- Address various spoofing attacks. (CVE-2025-40778)
- Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
- Support for parsing HHIT and BRID records has been added.
- Deprecate the "tkey-domain" statement.
- Deprecate the "tkey-gssapi-credential" statement.
- Prevent spurious SERVFAILs for certain 0-TTL resource records.
- Missing DNSSEC information when CD bit is set in query.
https://downloads.isc.org/isc/bind9/9.18.41/doc/arm/html/notes.html#notes-for-bind-9-18-41
bind-9.18.41-1.fc41 bind-dyndb-ldap-11.10-35.fc41
- bind-9.18.41-1.fc41
- bind-dyndb-ldap-11.10-35.fc41
- DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677)
- Address various spoofing attacks. (CVE-2025-40778)
- Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
- Support for parsing HHIT and BRID records has been added.
- Deprecate the "tkey-domain" statement.
- Deprecate the "tkey-gssapi-credential" statement.
- Prevent spurious SERVFAILs for certain 0-TTL resource records.
- Missing DNSSEC information when CD bit is set in query.
https://downloads.isc.org/isc/bind9/9.18.41/doc/arm/html/notes.html#notes-for-bind-9-18-41
bind-9.18.41-1.fc43 bind-dyndb-ldap-11.11-8.fc43
- bind-9.18.41-1.fc43
- bind-dyndb-ldap-11.11-8.fc43
- DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677)
- Address various spoofing attacks. (CVE-2025-40778)
- Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
- Support for parsing HHIT and BRID records has been added.
- Deprecate the "tkey-domain" statement.
- Deprecate the "tkey-gssapi-credential" statement.
- Prevent spurious SERVFAILs for certain 0-TTL resource records.
- Missing DNSSEC information when CD bit is set in query.
https://downloads.isc.org/isc/bind9/9.18.41/doc/arm/html/notes.html#notes-for-bind-9-18-41
bind-9.18.41-1.fc44 bind-dyndb-ldap-11.11-8.fc44
- bind-9.18.41-1.fc44
- bind-dyndb-ldap-11.11-8.fc44
- DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677)
- Address various spoofing attacks. (CVE-2025-40778)
- Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
- Support for parsing HHIT and BRID records has been added.
- Deprecate the "tkey-domain" statement.
- Deprecate the "tkey-gssapi-credential" statement.
- Prevent spurious SERVFAILs for certain 0-TTL resource records.
- Missing DNSSEC information when CD bit is set in query.
https://downloads.isc.org/isc/bind9/9.18.41/doc/arm/html/notes.html#notes-for-bind-9-18-41
ruby-3.3.10-21.fc41
- ruby-3.3.10-21.fc41
- Upgrade to Ruby 3.3.10.
- CVE-2025-58767 ruby: REXML denial of service (rhbz#2396203)
USN-7795-4: Linux kernel (Oracle) vulnerabilities
next-20251024: linux-next
DSA-6037-1 openjdk-21 - security update
USN-7839-1: Go Cryptography vulnerability
pcre2-10.46-1.fc42
- pcre2-10.46-1.fc42
Fix for CVE-2025-58050
openbao-2.4.3-1.fc42
- openbao-2.4.3-1.fc42
Update to upstream 2.4.3, including fixes for CVE-2025-62513 and CVE-2025-62705.
openbao-2.4.3-1.el10_2
- openbao-2.4.3-1.el10_2
Update to upstream 2.4.3, including fixes for CVE-2025-62513 and CVE-2025-62705.
openbao-2.4.3-1.fc41
- openbao-2.4.3-1.fc41
Update to upstream 2.4.3, including fixes for CVE-2025-62513 and CVE-2025-62705.
openbao-2.4.3-1.el10_0
- openbao-2.4.3-1.el10_0
Update to upstream 2.4.3, including fixes for CVE-2025-62513 and CVE-2025-62705.
openbao-2.4.3-1.el9
- openbao-2.4.3-1.el9
Update to upstream 2.4.3, including fixes for CVE-2025-62513 and CVE-2025-62705.
openbao-2.4.3-1.fc43
- openbao-2.4.3-1.fc43
Update to upstream 2.4.3, including fixes for CVE-2025-62513 and CVE-2025-62705.