Fedora Security Advisories

python-cryptography-46.0.7-1.fc43

4 hours 30 minutes ago
FEDORA-2026-95233f8a79 Packages in this update:
  • python-cryptography-46.0.7-1.fc43
Update description: Changelog * Wed Apr 8 2026 Jeremy Cline <jeremycline@microsoft.com> - 46.0.7-1 - Update to 46.0.7 - SECURITY ISSUE: Fixed an issue where non-contiguous buffers could be passed to APIs that accept Python buffers, which could lead to buffer overflow. CVE-2026-39892

python-cryptography-46.0.7-1.fc44

4 hours 30 minutes ago
FEDORA-2026-aa318887d6 Packages in this update:
  • python-cryptography-46.0.7-1.fc44
Update description: Changelog * Wed Apr 8 2026 Jeremy Cline <jeremycline@microsoft.com> - 46.0.7-1 - Update to 46.0.7 - SECURITY ISSUE: Fixed an issue where non-contiguous buffers could be passed to APIs that accept Python buffers, which could lead to buffer overflow. CVE-2026-39892

python-tomli-2.4.1-1.fc44

5 hours 4 minutes ago
FEDORA-2026-42d4c822e4 Packages in this update:
  • python-tomli-2.4.1-1.fc44
Update description:

Update to 2.4.1. Limit number of parts of a TOML key to address quadratic time complexity

mingw-LibRaw-0.21.5-2.fc43

5 hours 55 minutes ago
FEDORA-2026-066dcb4c72 Packages in this update:
  • mingw-LibRaw-0.21.5-2.fc43
Update description:

Backport fixes for CVE-2026-20889 CVE-2026-21413 CVE-2026-24450 CVE-2026-24660

Update to libraw-0.21.5.

mingw-LibRaw-0.21.5-2.fc42

5 hours 55 minutes ago
FEDORA-2026-2114a370b6 Packages in this update:
  • mingw-LibRaw-0.21.5-2.fc42
Update description:

Backport fixes for CVE-2026-20889 CVE-2026-21413 CVE-2026-24450 CVE-2026-24660

Update to libraw-0.21.5.

usd-26.03-3.fc44

6 hours 10 minutes ago
FEDORA-2026-502486fc61 Packages in this update:
  • usd-26.03-3.fc44
Update description:

Backport several OpenEXRCore security fixes

  • Fixes CVE-2026-34378 / GHSA-v76p-4qvv-vh4g; closes RHBZ#2455493
  • Fixes CVE-2026-34380 / GHSA-q3v8-hw4m-59w5; closes RHBZ#2455534
  • Fixes CVE-2026-34588 / GHSA-588r-cr5c-w6hf; closes RHBZ#2455505
  • Fixes CVE-2026-34589 / GHSA-p8xc-w3q4-h64x; closes RHBZ#2455501
  • Fixes CVE-2026-34379 / GHSA-w88v-vqhq-5p24; closes RHBZ#2455497

Backport fix for CVE-2026-34544 in OpenEXRCore

usd-26.03-3.fc45

7 hours 12 minutes ago
FEDORA-2026-c0f8cde7ad Packages in this update:
  • usd-26.03-3.fc45
Update description:

Automatic update for usd-26.03-3.fc45.

Changelog * Wed Apr 8 2026 Benjamin A. Beasley <code@musicinmybrain.net> - 26.03-3 - Backport several OpenEXRCore security fixes - Fixes CVE-2026-34378 / GHSA-v76p-4qvv-vh4g; closes RHBZ#2455493 - Fixes CVE-2026-34380 / GHSA-q3v8-hw4m-59w5; closes RHBZ#2455534 - Fixes CVE-2026-34588 / GHSA-588r-cr5c-w6hf; closes RHBZ#2455505 - Fixes CVE-2026-34589 / GHSA-p8xc-w3q4-h64x; closes RHBZ#2455501 - Fixes CVE-2026-34379 / GHSA-w88v-vqhq-5p24; closes RHBZ#2455497

flatpak-1.16.4-1.fc42

7 hours 24 minutes ago
FEDORA-2026-be26d4c1b2 Packages in this update:
  • flatpak-1.16.4-1.fc42
Update description:

Update to 1.16.4

Fixes for CVE-2026-34078, CVE-2026-34079, GHSA-2fxp-43j9-pwvc and GHSA-89xm-3m96-w3jg

flatpak-1.16.4-1.fc43

7 hours 36 minutes ago
FEDORA-2026-06b66012cd Packages in this update:
  • flatpak-1.16.4-1.fc43
Update description:

Update to 1.16.4

Fixes for CVE-2026-34078, CVE-2026-34079, GHSA-2fxp-43j9-pwvc and GHSA-89xm-3m96-w3jg

flatpak-1.17.4-1.fc44

7 hours 42 minutes ago
FEDORA-2026-17f6840cea Packages in this update:
  • flatpak-1.17.4-1.fc44
Update description:

Update to 1.17.4

Fixes for CVE-2026-34078, CVE-2026-34079, GHSA-2fxp-43j9-pwvc and GHSA-89xm-3m96-w3jg

nix-2.34.5-1.fc44

13 hours 24 minutes ago
FEDORA-2026-8c7366e046 Packages in this update:
  • nix-2.34.5-1.fc44
Update description:
  • update to 2.34
  • https://nix.dev/manual/nix/2.34/release-notes/rl-2.33.html
  • https://nix.dev/manual/nix/2.34/release-notes/rl-2.34.html
  • includes fix for nix-daemon critical GHSA-g3g9-5vj6-r3gj (CVE-2026-39860)

moby-engine-29.4.0-1.fc42

21 hours 44 minutes ago
FEDORA-2026-49fd0d9636 Packages in this update:
  • moby-engine-29.4.0-1.fc42
Update description:
  • Update to release v29.4.0
  • Resolves: rhbz#2455894
  • Resolves CVE-2026-34986: rhbz#2455665
  • Upstream new features and fixes

moby-engine-29.4.0-1.fc43

22 hours 22 minutes ago
FEDORA-2026-a5015b57b9 Packages in this update:
  • moby-engine-29.4.0-1.fc43
Update description:
  • Update to release v29.4.0
  • Resolves: rhbz#2455894
  • Resolves CVE-2026-34986: rhbz#2455665
  • Upstream new features and fixes
Checked
25 minutes 7 seconds ago