1 week 3 days ago
FEDORA-2026-a5b86bbf99
Packages in this update:
Update description:
Update of FreeType to 2.14.3.
1 week 3 days ago
FEDORA-2026-0cc4c9d395
Packages in this update:
Update description:
Security fix for CVE-2026-34986
1 week 3 days ago
FEDORA-2026-6b3e9ef128
Packages in this update:
Update description:
Security fix for CVE-2026-34986
1 week 3 days ago
It was discovered that Corosync incorrectly handled the membership commit
token validity check. A remote attacker could use this issue to cause
Corosync to crash, resulting in a denial of service, or to possibly obtain
a small quantity of sensitive information. (CVE-2026-35091)
It was discovered that Corosync incorrectly handled join message
validation. A remote attacker could possibly use this issue to cause
Corosync to crash, resulting in a denial of service. (CVE-2026-35092)
1 week 3 days ago
FEDORA-2026-4464b22917
Packages in this update:
Update description:
Security fix for CVE-2026-34986
1 week 3 days ago
It was discovered that Redis incorrectly handled certain specially crafted
Lua scripts. A remote attacker could possibly use this issue to cause a
denial of service or execute arbitrary code. This issue was only addressed in
lua5.1 on Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2025-49844)
It was discovered that Redis incorrectly handled certain specially crafted
Lua scripts. A remote attacker could possibly use this issue to cause a
denial of service or execute arbitrary code. This issue was only addressed in
lua-bitop on Ubuntu 20.04 LTS and Ubuntu 22.04 LTS and in redis on Ubuntu
16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 24.04 LTS. (CVE-2024-31449)
Seiya Nakata and Yudai Fujiwara discovered that Redis incorrectly handled
certain specially crafted Lua scripts. An attacker could possibly use this
issue to cause heap corruption and execute arbitrary code. This issue was only
addressed in lua-cjson on Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-24834)
1 week 3 days ago
It was discovered that tar-rs embedded in rustc incorrectly handled
symlinks when unpacking a tar archive. If a user or automated system were
tricked into processing a specially crafted tar archive, a remote attacker
could use this issue to modify permissions of arbitrary directories outside
the extraction root, and possibly escalate privileges.
1 week 3 days ago
It was discovered that xdg-dbus-proxy incorrectly handled eavesdropping
in policy rules. A local attacker could possibly use this issue to
intercept certain D-Bus messages.
1 week 4 days ago
In the Linux kernel, the following vulnerability has been
resolved: btrfs: ref-verify: fix use-after-free after invalid ref action At
btrfs_ref_tree_mod() after we successfully inserted the new ref entry
(local variable 'ref') into the respective block entry's rbtree (local
variable 'be'), if we find an unexpected action of BTRFS_DROP_DELAYED_REF,
we error out and free the ref entry without removing it from the block
entry's rbtree.
In the Linux kernel, the following vulnerability has been
resolved: wifi: brcmfmac: Fix oops due to NULL pointer dereference in
brcmf_sdiod_sglist_rw() This patch fixes a NULL pointer dereference bug in
brcmfmac that occurs when a high 'sd_sgentry_align' value applies (e.g.
512) and a lot of queued SKBs are sent from the pkt queue.
In the Linux kernel, the following vulnerability has been
resolved: net/smc: fix LGR and link use-after-free issue We encountered a
LGR/link use-after-free issue, which manifested as the LGR/link refcnt
reaching 0 early and entering the clear process, making resource access
unsafe.
In the Linux kernel, the following vulnerability has been
resolved: usb: cdc-acm: Check control transfer buffer size before access If
the first fragment is shorter than struct usb_cdc_notification, we can't
calculate an expected_size.
In the Linux kernel, the following vulnerability has been
resolved: drm/amdgpu: avoid buffer overflow attach in
smu_sys_set_pp_table() It malicious user provides a small pptable through
sysfs and then a bigger pptable, it may cause buffer overflow attack in
function smu_sys_set_pp_table().)(CVE-2025-21780).
In the Linux kernel, the following vulnerability has been
resolved: netfilter: nf_tables: fix inverted genmask check in
nft_map_catchall_activate() nft_map_catchall_activate() has an inverted
element activity check compared to its non-catchall counterpart
nft_mapelem_activate() and compared to what is logically required.
nft_map_catchall_activate() is called from the abort path to re-activate
catchall map elements that were deactivated during a failed transaction.
Qualys discovered that several vulnerabilities existed in the AppArmor
Linux kernel Security Module (LSM). An unprivileged local attacker could
use these issues to load, replace, and remove arbitrary AppArmor profiles
causing denial of service, exposure of sensitive information (kernel
memory), local privilege escalation, or possibly escape a container.)(CVE-2026-23268)
Qualys discovered that several vulnerabilities existed in the AppArmor
Linux kernel Security Module (LSM). An unprivileged local attacker could
use these issues to load, replace, and remove arbitrary AppArmor profiles
causing denial of service, exposure of sensitive information (kernel
memory), local privilege escalation, or possibly escape a container.)(CVE-2026-23269)
1 week 4 days ago
1 week 4 days ago
It was discovered that RetroArch did not correctly handle certain memory
operations, which could lead to a buffer overflow. If a user or automated
system were tricked into opening a specially crafted file, an attacker
could possibly use this issue to cause a denial of service or execute
arbitrary code. This issue only affected Ubuntu 24.04 LTS and Ubuntu 25.10.
1 week 4 days ago
1 week 4 days ago
FEDORA-EPEL-2026-d5cc2324a0
Packages in this update:
Update description:
Update to Asterisk 18.26.4, addressing numerous security vulnerabilities
accumulated since the long-stale 18.12.1 package. The following CVEs are fixed
in this update:
- CVE-2022-26498 (fixed in 18.13.0): use-after-free in chan_ooh323
- CVE-2022-42705 (fixed in 18.15.0): use-after-free in res_pjsip_pubsub
- CVE-2022-37325 (fixed in 18.15.1): crash in H323 channel via malformed IE
- CVE-2023-37457 (fixed in 18.20.0): buffer overflow in PJSIP_HEADER function
- CVE-2023-49294 (fixed in 18.20.1): arbitrary file read via AMI GetConfig
- CVE-2023-49786 (fixed in 18.20.1): DTLS race condition causing DoS
- CVE-2024-35190 (fixed in 18.23.1): unauthorized SIP requests matched as endpoint
- CVE-2024-42365 (fixed in 18.24.2): Write=originate allows code execution
- CVE-2024-42491 (fixed in 18.25.0): crash via malformed Contact/Record-Route URI
- CVE-2025-49832 (fixed in 18.26.3): DoS/RCE in res_stir_shaken
- CVE-2025-47779 (fixed in 18.26.2): identity forging via malformed From header
- CVE-2025-1131 (fixed in 18.26.3): local privilege escalation via safe_asterisk
- CVE-2025-54995 (fixed in 18.26.4): resource exhaustion via RTP port leak
1 week 4 days ago
FEDORA-EPEL-2026-f2281acb03
Packages in this update:
Update description:
Update to Asterisk 18.26.4, addressing numerous security vulnerabilities
accumulated since the long-stale 18.12.1 package. The following CVEs are fixed
in this update:
- CVE-2022-26498 (fixed in 18.13.0): use-after-free in chan_ooh323
- CVE-2022-42705 (fixed in 18.15.0): use-after-free in res_pjsip_pubsub
- CVE-2022-37325 (fixed in 18.15.1): crash in H323 channel via malformed IE
- CVE-2023-37457 (fixed in 18.20.0): buffer overflow in PJSIP_HEADER function
- CVE-2023-49294 (fixed in 18.20.1): arbitrary file read via AMI GetConfig
- CVE-2023-49786 (fixed in 18.20.1): DTLS race condition causing DoS
- CVE-2024-35190 (fixed in 18.23.1): unauthorized SIP requests matched as endpoint
- CVE-2024-42365 (fixed in 18.24.2): Write=originate allows code execution
- CVE-2024-42491 (fixed in 18.25.0): crash via malformed Contact/Record-Route URI
- CVE-2025-49832 (fixed in 18.26.3): DoS/RCE in res_stir_shaken
- CVE-2025-47779 (fixed in 18.26.2): identity forging via malformed From header
- CVE-2025-1131 (fixed in 18.26.3): local privilege escalation via safe_asterisk
- CVE-2025-54995 (fixed in 18.26.4): resource exhaustion via RTP port leak
1 week 5 days ago
1 week 5 days ago
1 week 5 days ago
FEDORA-2026-38d71393c1
Packages in this update:
Update description:
Update to Asterisk 18.26.4, addressing numerous security vulnerabilities
accumulated since the long-stale 18.12.1 package. The following CVEs are fixed
in this update:
- CVE-2022-26498 (fixed in 18.13.0): use-after-free in chan_ooh323
- CVE-2022-42705 (fixed in 18.15.0): use-after-free in res_pjsip_pubsub
- CVE-2022-37325 (fixed in 18.15.1): crash in H323 channel via malformed IE
- CVE-2023-37457 (fixed in 18.20.0): buffer overflow in PJSIP_HEADER function
- CVE-2023-49294 (fixed in 18.20.1): arbitrary file read via AMI GetConfig
- CVE-2023-49786 (fixed in 18.20.1): DTLS race condition causing DoS
- CVE-2024-35190 (fixed in 18.23.1): unauthorized SIP requests matched as endpoint
- CVE-2024-42365 (fixed in 18.24.2): Write=originate allows code execution
- CVE-2024-42491 (fixed in 18.25.0): crash via malformed Contact/Record-Route URI
- CVE-2025-49832 (fixed in 18.26.3): DoS/RCE in res_stir_shaken
- CVE-2025-47779 (fixed in 18.26.2): identity forging via malformed From header
- CVE-2025-1131 (fixed in 18.26.3): local privilege escalation via safe_asterisk
- CVE-2025-54995 (fixed in 18.26.4): resource exhaustion via RTP port leak
Also fixes F44FailsToInstall for asterisk-snmp (BZ#2433748).
1 week 5 days ago
FEDORA-2026-80b21debe7
Packages in this update:
Update description:
Update to Asterisk 18.26.4, addressing numerous security vulnerabilities
accumulated since the long-stale 18.12.1 package. The following CVEs are fixed
in this update:
- CVE-2022-26498 (fixed in 18.13.0): use-after-free in chan_ooh323
- CVE-2022-42705 (fixed in 18.15.0): use-after-free in res_pjsip_pubsub
- CVE-2022-37325 (fixed in 18.15.1): crash in H323 channel via malformed IE
- CVE-2023-37457 (fixed in 18.20.0): buffer overflow in PJSIP_HEADER function
- CVE-2023-49294 (fixed in 18.20.1): arbitrary file read via AMI GetConfig
- CVE-2023-49786 (fixed in 18.20.1): DTLS race condition causing DoS
- CVE-2024-35190 (fixed in 18.23.1): unauthorized SIP requests matched as endpoint
- CVE-2024-42365 (fixed in 18.24.2): Write=originate allows code execution
- CVE-2024-42491 (fixed in 18.25.0): crash via malformed Contact/Record-Route URI
- CVE-2025-49832 (fixed in 18.26.3): DoS/RCE in res_stir_shaken
- CVE-2025-47779 (fixed in 18.26.2): identity forging via malformed From header
- CVE-2025-1131 (fixed in 18.26.3): local privilege escalation via safe_asterisk
- CVE-2025-54995 (fixed in 18.26.4): resource exhaustion via RTP port leak
Also fixes F44FailsToInstall for asterisk-snmp (BZ#2433748).
1 week 5 days ago
FEDORA-2026-98decbde87
Packages in this update:
Update description:
Update to Asterisk 18.26.4, addressing numerous security vulnerabilities
accumulated since the long-stale 18.12.1 package. The following CVEs are fixed
in this update:
- CVE-2022-26498 (fixed in 18.13.0): use-after-free in chan_ooh323
- CVE-2022-42705 (fixed in 18.15.0): use-after-free in res_pjsip_pubsub
- CVE-2022-37325 (fixed in 18.15.1): crash in H323 channel via malformed IE
- CVE-2023-37457 (fixed in 18.20.0): buffer overflow in PJSIP_HEADER function
- CVE-2023-49294 (fixed in 18.20.1): arbitrary file read via AMI GetConfig
- CVE-2023-49786 (fixed in 18.20.1): DTLS race condition causing DoS
- CVE-2024-35190 (fixed in 18.23.1): unauthorized SIP requests matched as endpoint
- CVE-2024-42365 (fixed in 18.24.2): Write=originate allows code execution
- CVE-2024-42491 (fixed in 18.25.0): crash via malformed Contact/Record-Route URI
- CVE-2025-49832 (fixed in 18.26.3): DoS/RCE in res_stir_shaken
- CVE-2025-47779 (fixed in 18.26.2): identity forging via malformed From header
- CVE-2025-1131 (fixed in 18.26.3): local privilege escalation via safe_asterisk
- CVE-2025-54995 (fixed in 18.26.4): resource exhaustion via RTP port leak
Also fixes F44FailsToInstall for asterisk-snmp (BZ#2433748).
1 week 5 days ago
FEDORA-2026-29f4f47ade
Packages in this update:
- micropython-1.28.0-1.fc43
Update description:
Update to 1.28.0