48 minutes 36 seconds ago
FEDORA-EPEL-2026-eeb82ef938
Packages in this update:
- chromium-153.0.8010.36-1.el10_3
Update description:
Update to 153.0.8010.36, it fixes 230 CVEs: CVE-2026-87429 - CVE-2026-87658
48 minutes 36 seconds ago
FEDORA-EPEL-2026-dff966929c
Packages in this update:
- chromium-153.0.8010.36-1.el10_2
Update description:
Update to 153.0.8010.36, it fixes 230 CVEs: CVE-2026-87429 - CVE-2026-87658
48 minutes 36 seconds ago
FEDORA-2026-441ccd8509
Packages in this update:
- chromium-153.0.8010.36-1.fc44
Update description:
Update to 153.0.8010.36, it fixes 230 CVEs: CVE-2026-87429 - CVE-2026-87658
48 minutes 38 seconds ago
FEDORA-2026-a1a12d9b4f
Packages in this update:
- chromium-153.0.8010.36-1.fc43
Update description:
Update to 153.0.8010.36, it fixes 230 CVEs: CVE-2026-87429 - CVE-2026-87658
48 minutes 39 seconds ago
FEDORA-EPEL-2026-d7f643de0b
Packages in this update:
- chromium-153.0.8010.36-1.el10_4
Update description:
Update to 153.0.8010.36, it fixes 230 CVEs: CVE-2026-87429 - CVE-2026-87658
48 minutes 39 seconds ago
FEDORA-2026-6932094a69
Packages in this update:
- chromium-153.0.8010.36-1.fc45
Update description:
Update to 153.0.8010.36, it fixes 230 CVEs: CVE-2026-87429 - CVE-2026-87658
3 hours 38 minutes ago
FEDORA-2026-fba2e72ae4
Packages in this update:
Update description:
Update to 1.3.2, fixes a Low security issue
3 hours 38 minutes ago
FEDORA-2026-654bf10275
Packages in this update:
Update description:
Update to 1.3.2, fixes a Low security issue
9 hours 39 minutes ago
FEDORA-2026-1d448c1d40
Packages in this update:
Update description:
x86: DMs may cause mem leak by IRQ binding [XSA-509, CVE-2026-62437]
x86: improper handling of HVM emulation return codes
[XSA-510, CVE-2026-79602]
Unconditionally do TLB flushing ahead of page scrubbing [XSA-511,
CVE-2026-79603]
oxenstored: Unbounded accumulation of watches [XSA-512, CVE-2026-79604]
10 hours 55 minutes ago
It was discovered that python-cryptography incorrectly accepted objects
with immutable buffers when performing certain cipher operations. This
would result in corrupted output, contrary to expectations. This issue only
affected Ubuntu 18.04 LTS. (CVE-2023-23931)
It was discovered that python-cryptography reported the outcome of
decrypting PKCS#7 enveloped data in distinguishable ways, and with
observable timing differences. A remote attacker could possibly use this
issue to recover the key used to encrypt the message contents, and obtain
sensitive information. This issue only affected Ubuntu 26.04 LTS.
(CVE-2026-69247)
Jack Lloyd discovered that python-cryptography incorrectly handled wildcard
DNS names when enforcing the name constraints of a certificate authority. A
remote attacker could possibly use this issue to have an invalid
certificate chain accepted, and use names outside of the permitted ones.
This issue only affected Ubuntu 26.04 LTS. (CVE-2026-69248)
Samuel Judson discovered that python-cryptography incorrectly handled
certificate chains that contained duplicate certificates. A remote attacker
could possibly use this issue to cause python-cryptography to use excessive
resources, leading to a denial of service. This issue only affected Ubuntu
26.04 LTS. (CVE-2026-69249)
12 hours 4 minutes ago
FEDORA-2026-9e8f1c83d0
Packages in this update:
Update description:
12 hours 4 minutes ago
FEDORA-2026-56c3705788
Packages in this update:
Update description:
13 hours 3 minutes ago
Version:next-20260916 (linux-next)
Released:2026-09-16
14 hours 31 minutes ago
Ali Firas discovered that libheif incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service or
execute arbitrary code. (CVE-2026-62291)
Dmitrijs Trizna discovered that libheif incorrectly handled certain image
sequences. An attacker could possibly use this issue to cause a denial of
service. (CVE-2026-62377)
15 hours 38 minutes ago
FEDORA-2026-b9e02a8684
Packages in this update:
- rust-cryptoki-0.12.1-2.fc45
Update description:
New upstream release.
15 hours 44 minutes ago
FEDORA-2026-73d31ad4c6
Packages in this update:
Update description:
Latest security bugfix release from upstream. Changes: https://github.com/strukturag/libheif/releases/tag/v1.23.4 .
- Resolves 3 high impact and 3 medium impact vulnerabilities.
- Splits out the FFmpeg plugin to an optional subpackage to limit main package dependencies.
16 hours 10 minutes ago
FEDORA-2026-c66f1af6a3
Packages in this update:
- rust-cryptoki-0.12.1-2.fc43
Update description:
New upstream release.
16 hours 30 minutes ago
USN-8736-1 fixed vulnerabilities in Perl. This update provides the
corresponding fix for Perl on Ubuntu 24.04 LTS.
Original advisory details:
It was discovered that Perl incorrectly handled certain large inputs during
regular expression matching. An attacker could possibly use this issue to
trigger out-of-bounds heap reads or writes, resulting in a denial of
service or arbitrary code execution. (CVE-2026-15534)
It was discovered that Perl incorrectly handled certain regular expression
containing alternative matching branches. An attacker could possibly use
this issue to cause incorrect regular expression matches, resulting in
security restrictions being bypassed. (CVE-2026-19487)
16 hours 45 minutes ago
FEDORA-2026-738ce6f6f8
Packages in this update:
- rust-cryptoki-0.12.1-2.fc44
Update description:
New upstream release.
18 hours 26 minutes ago
FEDORA-2026-ee77e0c099
Packages in this update:
Update description:
- Rebased pcs to the newest major version (see CHANGELOG.md) - includes fix for CVE-2026-84828
- Updated standalone web UI and HA Cluster Management Cockpit application to pcs-web-ui 0.1.25 (see CHANGELOG_WUI.md)
- pcs no longer depends on rubygems ethon and ffi, rubygem curb is used instead