Aggregator
USN-8851-3: Linux kernel (Azure) vulnerabilities
aegisub-3.5.0-1.fc43
- aegisub-3.5.0-1.fc43
Update to Aegisub 3.5.0, fixing CVE-2026-92705: arbitrary code execution when opening crafted ASS subtitle files containing associated Automation script references. The fix requires confirmation before loading associated scripts, makes extension validation consistent with filesystem path interpretation, and sanitizes embedded NUL characters in project metadata. Upstream advisory: https://github.com/TypesettingTools/Aegisub/security/advisories/GHSA-67hq-5vgg-6f23
aegisub-3.5.0-2.fc44
- aegisub-3.5.0-2.fc44
Update to Aegisub 3.5.0, fixing CVE-2026-92705: arbitrary code execution when opening crafted ASS subtitle files containing associated Automation script references. The fix requires confirmation before loading associated scripts, makes extension validation consistent with filesystem path interpretation, and sanitizes embedded NUL characters in project metadata. Upstream advisory: https://github.com/TypesettingTools/Aegisub/security/advisories/GHSA-67hq-5vgg-6f23
aegisub-3.5.0-1.fc45
- aegisub-3.5.0-1.fc45
Update to Aegisub 3.5.0, fixing CVE-2026-92705: arbitrary code execution when opening crafted ASS subtitle files containing associated Automation script references. The fix requires confirmation before loading associated scripts, makes extension validation consistent with filesystem path interpretation, and sanitizes embedded NUL characters in project metadata. Upstream advisory: https://github.com/TypesettingTools/Aegisub/security/advisories/GHSA-67hq-5vgg-6f23
zabbix7.0-7.0.31-1.el10_3
- zabbix7.0-7.0.31-1.el10_3
Update to 7.0.31 (CVE-2026-59782, CVE-2026-59783, CVE-2026-59785, CVE-2026-59786, CVE-2026-59787)
zabbix7.0-7.0.31-1.el10_4
- zabbix7.0-7.0.31-1.el10_4
Update to 7.0.31 (CVE-2026-59782, CVE-2026-59783, CVE-2026-59785, CVE-2026-59786, CVE-2026-59787)
zabbix7.0-7.0.31-1.el9
- zabbix7.0-7.0.31-1.el9
Update to 7.0.31 (CVE-2026-59782, CVE-2026-59783, CVE-2026-59785, CVE-2026-59786, CVE-2026-59787)
zabbix7.0-7.0.31-1.el8
- zabbix7.0-7.0.31-1.el8
Update to 7.0.31 (CVE-2026-59782, CVE-2026-59783, CVE-2026-59785, CVE-2026-59786, CVE-2026-59787)
Update to 7.0.28
zabbix7.0-7.0.31-1.el10_2
- zabbix7.0-7.0.31-1.el10_2
Update to 7.0.31 (CVE-2026-59782, CVE-2026-59783, CVE-2026-59785, CVE-2026-59786, CVE-2026-59787)
zabbix-6.0.48-1.el9
- zabbix-6.0.48-1.el9
Update to 6.0.48 (CVE-2026-59782, CVE-2026-59785, CVE-2026-59787)
zabbix6.0-6.0.48-1.el8
- zabbix6.0-6.0.48-1.el8
Update to 6.0.48 (CVE-2026-59782, CVE-2026-59785, CVE-2026-59787)
curl-8.18.0-11.fc44
- curl-8.18.0-11.fc44
- Fix HTTP/2 server push UAF (CVE-2026-18924)
USN-8868-1: LibreOffice vulnerabilities
next-20261005: linux-next
arm-none-eabi-binutils-cs-2.45-5.fc45
- arm-none-eabi-binutils-cs-2.45-5.fc45
- fix CVE-2026-19582: a potential buffer overflow in rsrc_resource_name (rhbz#2519352)
arm-none-eabi-binutils-cs-2.45-5.fc44
- arm-none-eabi-binutils-cs-2.45-5.fc44
- fix CVE-2026-19582: a potential buffer overflow in rsrc_resource_name (rhbz#2519352)
arm-none-eabi-binutils-cs-2.45-5.fc43
- arm-none-eabi-binutils-cs-2.45-5.fc43
- fix CVE-2026-19582: a potential buffer overflow in rsrc_resource_name (rhbz#2519352)
avr-binutils-2.45-8.fc45
- avr-binutils-2.45-8.fc45
- fix CVE-2026-19582: a potential buffer overflow in rsrc_resource_name (rhbz#2519351)
avr-binutils-2.45-8.fc44
- avr-binutils-2.45-8.fc44
- fix CVE-2026-19582: a potential buffer overflow in rsrc_resource_name (rhbz#2519351)