Aggregator

USN-8150-1: SPIP vulnerabilities

5 hours 38 minutes ago
It was discovered that SPIP did not properly sanitize certain inputs. A remote attacker could possibly use this issue to perform cross site scripting. (CVE-2022-28959) It was discovered that SPIP did not properly sanitize certain inputs. A remote attacker could possibly use this issue to perform PHP injection attacks. (CVE-2022-28960) It was discovered that SPIP did not properly sanitize certain inputs. A remote attacker could possibly use this issue to perform SQL injection attacks. (CVE-2022-28961)

NetworkManager-ssh-1.4.3-1.fc45

2 days 8 hours ago
FEDORA-2026-87e30fe05b Packages in this update:
  • NetworkManager-ssh-1.4.3-1.fc45
Update description:

Automatic update for NetworkManager-ssh-1.4.3-1.fc45.

Changelog * Fri Apr 3 2026 Dan Fruehauf <malkodan@gmail.com> - 1.4.3-1 - Always run autoreconf -fvi - Fix file access for private key and known hosts (rhbz#2428396) - Fix pkg-config macro - Move D-Bus policy file to /usr/share/dbus-1/system.d/

libopenmpt-0.8.6-1.el9

2 days 14 hours ago
FEDORA-EPEL-2026-f68290c016 Packages in this update:
  • libopenmpt-0.8.6-1.el9
Update description: libopenmpt 0.8.6 (2026-03-24)
  • [Sec] The security fix in libopenmpt 0.8.5 (r25042) was incomplete, causing a regression when playing short looped (“chip”) samples (r25084).
libopenmpt 0.8.5 (2026-03-22)
  • [Sec] Possible out-of-bounds sample data read in a specific combination of reverse sample playback + offset past sample loop. (r25042).
  • MOD: ProTracker arpeggio wrapraound results in an effective period of 65536 on Paula, not pausing the sample entirely.
  • ULT: Loop points were incorrectly limited for 16-bit samples.
  • zlib: Update to v1.3.2 (2026-02-17).
  • miniz: Update to v3.1.1 (2026-02-03).

libopenmpt-0.8.6-1.el10_2

2 days 14 hours ago
FEDORA-EPEL-2026-3e5052fb10 Packages in this update:
  • libopenmpt-0.8.6-1.el10_2
Update description: libopenmpt 0.8.6 (2026-03-24)
  • [Sec] The security fix in libopenmpt 0.8.5 (r25042) was incomplete, causing a regression when playing short looped (“chip”) samples (r25084).
libopenmpt 0.8.5 (2026-03-22)
  • [Sec] Possible out-of-bounds sample data read in a specific combination of reverse sample playback + offset past sample loop. (r25042).
  • MOD: ProTracker arpeggio wrapraound results in an effective period of 65536 on Paula, not pausing the sample entirely.
  • ULT: Loop points were incorrectly limited for 16-bit samples.
  • zlib: Update to v1.3.2 (2026-02-17).
  • miniz: Update to v3.1.1 (2026-02-03).

libopenmpt-0.8.6-1.el10_1

2 days 14 hours ago
FEDORA-EPEL-2026-b529a37d50 Packages in this update:
  • libopenmpt-0.8.6-1.el10_1
Update description: libopenmpt 0.8.6 (2026-03-24)
  • [Sec] The security fix in libopenmpt 0.8.5 (r25042) was incomplete, causing a regression when playing short looped (“chip”) samples (r25084).
libopenmpt 0.8.5 (2026-03-22)
  • [Sec] Possible out-of-bounds sample data read in a specific combination of reverse sample playback + offset past sample loop. (r25042).
  • MOD: ProTracker arpeggio wrapraound results in an effective period of 65536 on Paula, not pausing the sample entirely.
  • ULT: Loop points were incorrectly limited for 16-bit samples.
  • zlib: Update to v1.3.2 (2026-02-17).
  • miniz: Update to v3.1.1 (2026-02-03).

libopenmpt-0.8.6-1.el10_3

2 days 14 hours ago
FEDORA-EPEL-2026-171a377c45 Packages in this update:
  • libopenmpt-0.8.6-1.el10_3
Update description: libopenmpt 0.8.6 (2026-03-24)
  • [Sec] The security fix in libopenmpt 0.8.5 (r25042) was incomplete, causing a regression when playing short looped (“chip”) samples (r25084).
libopenmpt 0.8.5 (2026-03-22)
  • [Sec] Possible out-of-bounds sample data read in a specific combination of reverse sample playback + offset past sample loop. (r25042).
  • MOD: ProTracker arpeggio wrapraound results in an effective period of 65536 on Paula, not pausing the sample entirely.
  • ULT: Loop points were incorrectly limited for 16-bit samples.
  • zlib: Update to v1.3.2 (2026-02-17).
  • miniz: Update to v3.1.1 (2026-02-03).

libopenmpt-0.8.6-1.el8

2 days 14 hours ago
FEDORA-EPEL-2026-4a5d8adc71 Packages in this update:
  • libopenmpt-0.8.6-1.el8
Update description: libopenmpt 0.8.6 (2026-03-24)
  • [Sec] The security fix in libopenmpt 0.8.5 (r25042) was incomplete, causing a regression when playing short looped (“chip”) samples (r25084).
libopenmpt 0.8.5 (2026-03-22)
  • [Sec] Possible out-of-bounds sample data read in a specific combination of reverse sample playback + offset past sample loop. (r25042).
  • MOD: ProTracker arpeggio wrapraound results in an effective period of 65536 on Paula, not pausing the sample entirely.
  • ULT: Loop points were incorrectly limited for 16-bit samples.
  • zlib: Update to v1.3.2 (2026-02-17).
  • miniz: Update to v3.1.1 (2026-02-03).