Aggregator

xkbcomp-1.5.0-1.fc43

3 weeks 2 days ago
FEDORA-2025-3a9b79ca0e Packages in this update:
  • xkbcomp-1.5.0-1.fc43
Update description:

xkbcomp 1.5.0 (CVE-2018-15853, CVE-2018-15859, CVE-2018-15861, CVE-2018-15863)

gi-loadouts-0.1.10-2.fc43 kf6-kcoreaddons-6.20.0-2.fc43 kf6-kguiaddons-6.20.0-2.fc43 kf6-kjobwidgets-6.20.0-2.fc43 kf6-knotifications-6.20.0-2.fc43 kf6-kstatusnotifieritem-6.20.0-2.fc43 kf6-kunitconversion-6.20.0-2.fc43 kf6-kwidgetsaddons-6.20.0-2.fc43…

3 weeks 3 days ago
FEDORA-2025-0cc929ff17 Packages in this update:
  • gi-loadouts-0.1.10-2.fc43
  • kf6-kcoreaddons-6.20.0-2.fc43
  • kf6-kguiaddons-6.20.0-2.fc43
  • kf6-kjobwidgets-6.20.0-2.fc43
  • kf6-knotifications-6.20.0-2.fc43
  • kf6-kstatusnotifieritem-6.20.0-2.fc43
  • kf6-kunitconversion-6.20.0-2.fc43
  • kf6-kwidgetsaddons-6.20.0-2.fc43
  • kf6-kxmlgui-6.20.0-2.fc43
  • nanovna-saver-0.7.3-8.fc43
  • persepolis-5.1.1-6.fc43
  • python-ezdxf-1.4.3-3.fc43
  • python-pyside6-6.10.1-2.fc43
  • sigil-2.6.2-3.fc43
  • syncplay-1.7.4-6.fc43
  • torbrowser-launcher-0.3.9-2.fc43
  • ubertooth-2020.12.R1-24.fc43
  • usd-25.08-11.fc43
Update description:

PySide6 6.10.1 update.

Pyside6 6.10.1 release.

Rebuilt with stb_image patched for two new security bugs.

USN-7903-1: Django vulnerabilities

3 weeks 3 days ago
It was discovered that Django incorrectly handled certain characters in the FilteredRelation object. An attacker could possibly use this issue to execute arbitrary SQL commands. This issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, Ubuntu 25.04, and Ubuntu 25.10. (CVE-2025-13372) Seokchan Yoon discovered that Django inefficiently handled deserialization of XML objects. An attacker could possibly use this issue to cause Django to use excessive resources, causing a denial of service. (CVE-2025-64460)

USN-7855-2: Unbound regression

3 weeks 3 days ago
USN-7855-1 fixed vulnerabilities in Unbound. It was discovered that the fix for CVE-2025-11411 was incomplete. This update fixes the problem. Original advisory details: Yuxiao Wu, Yunyi Zhang, Baojun Liu, and Haixin Duan discovered that Unbound incorrectly handled certain promiscuous NS RRSets. A remote attacker could possibly use this issue to perform a domain hijack attack.

perl-CGI-Simple-1.282-1.fc42

3 weeks 3 days ago
FEDORA-2025-47551b2aa2 Packages in this update:
  • perl-CGI-Simple-1.282-1.fc42
Update description:

1.282 - Sanitize all user-supplied values before inserting into HTTP headers; Fixed CVE-2025-40927.

perl-CGI-Simple-1.282-1.fc43

3 weeks 3 days ago
FEDORA-2025-3dd97ed203 Packages in this update:
  • perl-CGI-Simple-1.282-1.fc43
Update description:

1.282 - Sanitize all user-supplied values before inserting into HTTP headers; Fixed CVE-2025-40927.