Aggregator
USN-7980-1: OpenSSL vulnerabilities
next-20260127: linux-next
openssl-3.2.6-3.fc42
- openssl-3.2.6-3.fc42
Don't crash on parsing PKCS#12 without MAC Resolves: CVE-2025-11187 Resolves: CVE-2025-15467 Resolves: CVE-2025-69419
openssl-3.5.4-2.fc43
- openssl-3.5.4-2.fc43
Resolves: CVE-2025-15467 Resolves: CVE-2025-15468 Resolves: CVE-2025-15469 Resolves: CVE-2025-66199 Resolves: CVE-2025-68160 Resolves: CVE-2025-69418 Resolves: CVE-2025-69420 Resolves: CVE-2025-69421 Resolves: CVE-2025-69419 Resolves: CVE-2026-22795 Resolves: CVE-2026-22796 Resolves: CVE-2025-11187
java-latest-openjdk-26.0.0.0.32-0.0.1.ea.el8
- java-latest-openjdk-26.0.0.0.32-0.0.1.ea.el8
January 2026 annual updates
java-latest-openjdk-26.0.0.0.32-0.0.1.ea.el10_2 java-latest-openjdk-portable-26.0.0.0.32-0.1.ea.rolling.el8
- java-latest-openjdk-26.0.0.0.32-0.0.1.ea.el10_2
- java-latest-openjdk-portable-26.0.0.0.32-0.1.ea.rolling.el8
January 2026 annual updates
java-latest-openjdk-26.0.0.0.32-0.0.1.ea.el9
- java-latest-openjdk-26.0.0.0.32-0.0.1.ea.el9
January 2026 annual updates
java-21-openjdk-21.0.10.0.7-2.fc43 java-25-openjdk-25.0.2.0.10-2.fc43 java-latest-openjdk-26.0.0.0.32-0.0.1.ea.fc43
- java-21-openjdk-21.0.10.0.7-2.fc43
- java-25-openjdk-25.0.2.0.10-2.fc43
- java-latest-openjdk-26.0.0.0.32-0.0.1.ea.fc43
January 2026 annual updates
January 2026 security update
java-21-openjdk-21.0.10.0.7-2.fc42 java-25-openjdk-25.0.2.0.10-2.fc42 java-latest-openjdk-26.0.0.0.32-0.0.1.ea.fc42
- java-21-openjdk-21.0.10.0.7-2.fc42
- java-25-openjdk-25.0.2.0.10-2.fc42
- java-latest-openjdk-26.0.0.0.32-0.0.1.ea.fc42
January 2026 annual updates
January 2026 security update
python-python-multipart-0.0.22-1.el10_2
- python-python-multipart-0.0.22-1.el10_2
Security fix for CVE-2026-24486 / GHSA-wp53-j4wj-2cfg.
0.0.22 (2026-01-25)- Drop directory path from filename in File
yarnpkg-1.22.22-16.el10_2
- yarnpkg-1.22.22-16.el10_2
Update vendor bundle, fixes CVE-2025-13465.
yarnpkg-1.22.22-16.el9
- yarnpkg-1.22.22-16.el9
Update vendor bundle, fixes CVE-2025-13465.
USN-7979-1: jaraco.context vulnerability
yarnpkg-1.22.22-16.fc42
- yarnpkg-1.22.22-16.fc42
Regenerate vendor tarball. Fixes CVE-2025-13465.
yarnpkg-1.22.22-16.fc43
- yarnpkg-1.22.22-16.fc43
Regenerate vendor tarball. Fixes CVE-2025-13465.
pgadmin4-9.11-3.fc42
- pgadmin4-9.11-3.fc42
Regenerate vendor tarball. Fixes CVE-2025-13465.
pgadmin4-9.11-3.fc43
- pgadmin4-9.11-3.fc43
Regenerate vendor tarball. Fixes CVE-2025-13465.
phpunit12-12.5.8-1.fc42
- phpunit12-12.5.8-1.fc42
- To prevent Poisoned Pipeline Execution (PPE) attacks using prepared .coverage files in pull requests, a PHPT test will no longer be run if the temporary file for writing code coverage information already exists before the test runs
- #6362: Manually instantiated test doubles are broken since PHPUnit 11.2
- #6470: Infinite recursion in Count::getCountOf() for unusal implementations of Iterator or IteratorAggregate
- Reverted a change that caused a build failure for the PHP project's nightly community job
- #6461: any() matcher (soft deprecation)
- #6470: Mocking a class with a property hook setter accepting more types than the property results in a fatal error
phpunit12-12.5.8-1.fc43
- phpunit12-12.5.8-1.fc43
- To prevent Poisoned Pipeline Execution (PPE) attacks using prepared .coverage files in pull requests, a PHPT test will no longer be run if the temporary file for writing code coverage information already exists before the test runs
- #6362: Manually instantiated test doubles are broken since PHPUnit 11.2
- #6470: Infinite recursion in Count::getCountOf() for unusal implementations of Iterator or IteratorAggregate
- Reverted a change that caused a build failure for the PHP project's nightly community job
- #6461: any() matcher (soft deprecation)
- #6470: Mocking a class with a property hook setter accepting more types than the property results in a fatal error