Aggregator

python-django5-5.2.17-2.fc44

21 minutes 46 seconds ago
FEDORA-2026-301e6e2983 Packages in this update:
  • python-django5-5.2.17-2.fc44
Update description:

Update python-django5 to the latest 5.x release (5.2.17)

  • Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups
  • Fixes CVE-2026-15337 [low]: Potential denial-of-service vulnerability in check_for_language()
  • Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections
  • Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin

python-django5-5.2.17-2.fc43

21 minutes 47 seconds ago
FEDORA-2026-6b28b4e483 Packages in this update:
  • python-django5-5.2.17-2.fc43
Update description:

Update python-django5 to the latest 5.x release (5.2.17)

  • Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups
  • Fixes CVE-2026-15337 [low]: Potential denial-of-service vulnerability in check_for_language()
  • Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections
  • Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin

python-django5-5.2.17-2.fc45

21 minutes 47 seconds ago
FEDORA-2026-950089270f Packages in this update:
  • python-django5-5.2.17-2.fc45
Update description:

Update python-django5 to the latest 5.x release (5.2.17)

  • Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups
  • Fixes CVE-2026-15337 [low]: Potential denial-of-service vulnerability in check_for_language()
  • Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections
  • Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin

tar-1.35-10.fc45

3 hours 59 minutes ago
FEDORA-2026-ee1eb89e7b Packages in this update:
  • tar-1.35-10.fc45
Update description:

Fix CVE-2026-5704, CVE-2026-18508, CVE-2026-18477, and a regression in the fix for CVE-2025-45582.

gnatcoll-26.0.0-5.fc45

4 hours 20 minutes ago
FEDORA-2026-c8b1bb0c97 Packages in this update:
  • gnatcoll-26.0.0-5.fc45
Update description:

Patched the vulnerabilities GNATCOLL-CORE-0162 and GNATCOLL-CORE-0164 in a way that avoids interface changes.

gnatcoll-26.0.0-4.fc44

4 hours 50 minutes ago
FEDORA-2026-11f44e3c2c Packages in this update:
  • gnatcoll-26.0.0-4.fc44
Update description:

Patched the vulnerabilities GNATCOLL-CORE-0162 and GNATCOLL-CORE-0164 in a way that avoids interface changes.

gnatcoll-25.0.0-6.fc43

5 hours 4 minutes ago
FEDORA-2026-d5c7f91202 Packages in this update:
  • gnatcoll-25.0.0-6.fc43
Update description:

Patched the vulnerabilities GNATCOLL-CORE-0162 and GNATCOLL-CORE-0164 in a way that avoids interface changes.

curl-8.15.0-10.fc43

7 hours 26 minutes ago
FEDORA-2026-6841033933 Packages in this update:
  • curl-8.15.0-10.fc43
Update description:
  • fix HTTP/2 stream-dependency tree UAF (CVE-2026-10536)
  • fix stale proxy password leak (CVE-2026-9079)
  • fix wrong reuse for different services (CVE-2026-8458)