Aggregator

singularity-ce-4.4.2-1.fc45

3 hours 32 minutes ago
FEDORA-2026-d32912dc74 Packages in this update:
  • singularity-ce-4.4.2-1.fc45
Update description:

Automatic update for singularity-ce-4.4.2-1.fc45.

Changelog * Wed Jun 10 2026 David Trudgian <dtrudg@sylabs.io> - 4.4.2-1 - Upgrade to 4.4.2 upstream version. - Fix rhbz#2453093 - Fix rhbz#2458933 - Fix CVE-2026-47215

perl-GD-2.86-1.el9

5 hours 7 minutes ago
FEDORA-EPEL-2026-dc3d293a5d Packages in this update:
  • perl-GD-2.86-1.el9
Update description:

This update fixes a command injection issue resulting from the use of the 2-argument form of open (CVE-2026-11526).

perl-GD-2.86-1.el8

5 hours 7 minutes ago
FEDORA-EPEL-2026-fe2027915d Packages in this update:
  • perl-GD-2.86-1.el8
Update description:

This update fixes a command injection issue resulting from the use of the 2-argument form of open (CVE-2026-11526).

perl-GD-2.86-1.el10_3

5 hours 7 minutes ago
FEDORA-EPEL-2026-64e6156b8f Packages in this update:
  • perl-GD-2.86-1.el10_3
Update description:

This update fixes a command injection issue resulting from the use of the 2-argument form of open (CVE-2026-11526).

perl-GD-2.86-1.el10_2

5 hours 7 minutes ago
FEDORA-EPEL-2026-d41d0279ec Packages in this update:
  • perl-GD-2.86-1.el10_2
Update description:

This update fixes a command injection issue resulting from the use of the 2-argument form of open (CVE-2026-11526).

perl-GD-2.86-1.fc44

5 hours 7 minutes ago
FEDORA-2026-263adf0222 Packages in this update:
  • perl-GD-2.86-1.fc44
Update description:

This update fixes a command injection issue resulting from the use of the 2-argument form of open (CVE-2026-11526).

perl-GD-2.86-1.fc43

5 hours 7 minutes ago
FEDORA-2026-63831abaee Packages in this update:
  • perl-GD-2.86-1.fc43
Update description:

This update fixes a command injection issue resulting from the use of the 2-argument form of open (CVE-2026-11526).

USN-8417-1: Tomcat vulnerabilities

5 hours 18 minutes ago
It was discovered that Tomcat did not properly limit the size of WebDAV LOCK and PROPFIND request bodies. A remote attacker could use this issue to cause Tomcat to consume excessive memory, resulting in a denial of service. (CVE-2026-41284) It was discovered that Tomcat incorrectly validated HTTP/2 header fields. A remote attacker could use this issue to cause Tomcat to crash or possibly execute arbitrary code. (CVE-2026-41293) It was discovered that Tomcat did not properly clear HTTP authentication headers during WebSocket connection upgrades and redirects. A remote attacker could use this issue to obtain sensitive credentials. (CVE-2026-42498) It was discovered that Tomcat incorrectly handled digest authentication. A remote attacker could possibly use this issue to bypass authentication restrictions. (CVE-2026-43512) It was discovered that Tomcat incorrectly handled case sensitivity in LockOutRealm. A remote attacker could possibly use this issue to bypass account lockout protections and obtain sensitive information. (CVE-2026-43513) It was discovered that Tomcat incorrectly handled authorization when multiple method constraints defined the same HTTP method. A remote attacker could possibly use this issue to bypass authorization restrictions. (CVE-2026-43515)