Aggregator

rabbitmq-server-4.2.9-3.fc44

1 day 2 hours ago
FEDORA-2026-fff73c7d8a Packages in this update:
  • rabbitmq-server-4.2.9-3.fc44
Update description:

Fix for CVE-2026-67420 (RabbitMQ: unauthorized user impersonation via stale OAuth token refresh). On a JWT/OAuth token refresh, rabbit_access_control:update_state/2 discarded the refreshed user tags, so a revoked 'impersonator' tag could survive on an existing connection. Backported from upstream v4.3.x (commit 5de287d).

USN-8911-1: Linux kernel (OEM) vulnerabilities

1 day 6 hours ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Hardware crypto device drivers; - NVIDIA Tegra memory controller driver; - Network drivers; - USB core drivers; - GFS2 file system; - OCFS2 file system; - SMB network file system; - SoundWire (SDCA) ASoC drivers; - B.A.T.M.A.N. meshing protocol; - Ceph Core library; - IPv4 networking; - IPv6 networking; - Netfilter; - Open vSwitch; - RxRPC session sockets; - SCTP protocol; - TIPC protocol; (CVE-2026-43095, CVE-2026-52914, CVE-2026-52931, CVE-2026-52955, CVE-2026-52958, CVE-2026-52982, CVE-2026-52986, CVE-2026-52993, CVE-2026-52999, CVE-2026-53002, CVE-2026-53006, CVE-2026-53010, CVE-2026-53043, CVE-2026-53045, CVE-2026-53046, CVE-2026-53049, CVE-2026-53055, CVE-2026-53088, CVE-2026-53151, CVE-2026-53175, CVE-2026-53215, CVE-2026-53216, CVE-2026-53224, CVE-2026-53246, CVE-2026-53247, CVE-2026-53260, CVE-2026-53309, CVE-2026-64531, CVE-2026-68372)

curl-8.21.0-8.fc45

1 day 8 hours ago
FEDORA-2026-b60c369f26 Packages in this update:
  • curl-8.21.0-8.fc45
Update description:
  • fix OpenLDAP SASL authentication bypass (CVE-2026-13608)
  • fix OpenSSL pinning bypass (CVE-2026-80230)

php-pecl-mongodb2-2.1.11-1.el10_2

1 day 9 hours ago
FEDORA-EPEL-2026-b756a4f5b9 Packages in this update:
  • php-pecl-mongodb2-2.1.11-1.el10_2
Update description: Version 2.1.11

Release Highlights

  • PHPC-2739: Check returns of BSON append operations. CVE-2026-106436
  • PHPC-2741: Add additional length BSON length checks. CVE-2026-106432

php-pecl-mongodb2-2.1.11-1.fc43

1 day 9 hours ago
FEDORA-2026-6d651258fb Packages in this update:
  • php-pecl-mongodb2-2.1.11-1.fc43
Update description: Version 2.1.11

Release Highlights

  • PHPC-2739: Check returns of BSON append operations. CVE-2026-106436
  • PHPC-2741: Add additional length BSON length checks. CVE-2026-106432

php-pecl-mongodb2-2.1.11-1.fc44

1 day 9 hours ago
FEDORA-2026-42660f105e Packages in this update:
  • php-pecl-mongodb2-2.1.11-1.fc44
Update description: Version 2.1.11

Release Highlights

  • PHPC-2739: Check returns of BSON append operations. CVE-2026-106436
  • PHPC-2741: Add additional length BSON length checks. CVE-2026-106432

php-pecl-mongodb2-2.5.4-1.fc45

1 day 9 hours ago
FEDORA-2026-2ddb8e6c2e Packages in this update:
  • php-pecl-mongodb2-2.5.4-1.fc45
Update description: Version 2.5.4

Release Highlights

  • PHPC-2739: Check returns of BSON append operations. CVE-2026-106436
  • PHPC-2741: Add additional length BSON length checks. CVE-2026-106432
  • PHPC-2505: Fix foreach iteration of MongoDB\Driver\Cursor after garbage collection.