Fedora Security Advisories

proftpd-1.3.9c-3.el10_2

3 days 1 hour ago
FEDORA-EPEL-2026-8258136556 Packages in this update:
  • proftpd-1.3.9c-3.el10_2
Update description:

This update adds a new module, mod_procfs, which is enabled by default. It addressses CVE-2026-35025 (ACL bypass via /proc/self/root path prefix), by disallowing any file accesses via procfs filesystems.

kernel-7.1.4-102.fc43

3 days 1 hour ago
FEDORA-2026-f1fc7772c3 Packages in this update:
  • kernel-7.1.4-102.fc43
Update description:

The 7.1.4-102/202 stable kernel updates contain a few important fixes across the tree.

The 7.1.4-101/201 stable kernel update contains a fix for a rather important security issue with net/can.

kernel-7.1.4-202.fc44

3 days 1 hour ago
FEDORA-2026-2dd8b600bb Packages in this update:
  • kernel-7.1.4-202.fc44
Update description:

The 7.1.4-102/202 stable kernel updates contain a few important fixes across the tree.

The 7.1.4-101/201 stable kernel update contains a fix for a rather important security issue with net/can.

proftpd-1.3.9c-3.fc43

3 days 1 hour ago
FEDORA-2026-d314ce6051 Packages in this update:
  • proftpd-1.3.9c-3.fc43
Update description:

This update adds a new module, mod_procfs, which is enabled by default. It addressses CVE-2026-35025 (ACL bypass via /proc/self/root path prefix), by disallowing any file accesses via procfs filesystems.

proftpd-1.3.9c-3.fc44

3 days 1 hour ago
FEDORA-2026-2994824419 Packages in this update:
  • proftpd-1.3.9c-3.fc44
Update description:

This update adds a new module, mod_procfs, which is enabled by default. It addressses CVE-2026-35025 (ACL bypass via /proc/self/root path prefix), by disallowing any file accesses via procfs filesystems.

golang-x-image-0.44.0-1.fc45

3 days 6 hours ago
FEDORA-2026-3e4b43a4cd Packages in this update:
  • golang-x-image-0.44.0-1.fc45
Update description:

Automatic update for golang-x-image-0.44.0-1.fc45.

Changelog * Tue Jul 21 2026 Packit <hello@packit.dev> - 0.44.0-1 - Update to 0.44.0 upstream release - Resolves: rhbz#2343804 - Resolves: rhbz#2434621 - Resolves: rhbz#2494479 * Thu Jul 16 2026 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.0-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild * Mon Feb 9 2026 Miroslav Suchý <msuchy@redhat.com> - 0.23.0-6 - migrate license to SPDX * Tue Feb 3 2026 Maxwell G <maxwell@gtmx.me> - 0.23.0-5 - Rebuild for https://fedoraproject.org/wiki/Changes/golang1.26 * Fri Jan 16 2026 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild

llvm-22.1.8-4.fc44

3 days 9 hours ago
FEDORA-2026-597e8f9de1 Packages in this update:
  • llvm-22.1.8-4.fc44
Update description:

Backport fixes from LLVM 23

  • Fix an issue that could cause a buffer overflow when reading a corrupted bitcode file.
  • Fix a miscompilation known to affect rust applications.
  • Fix a miscompilation in x86 vectorized code.
  • Fix 2 issues in LLD.

chromium-150.0.7871.128-1.el10_3

3 days 11 hours ago
FEDORA-EPEL-2026-80f5d69973 Packages in this update:
  • chromium-150.0.7871.128-1.el10_3
Update description:

Update to 150.0.7871.128

* CVE-2026-15899: Use after free in CameraCapture * CVE-2026-15900: Use after free in GPU * CVE-2026-15901: Use after free in Network * CVE-2026-15902: Use after free in Cast * CVE-2026-15903: Out of bounds read and write in V8 * CVE-2026-15904: Use after free in Ozone * CVE-2026-15905: Use after free in Aura

chromium-150.0.7871.128-1.fc44

3 days 11 hours ago
FEDORA-2026-310f620a68 Packages in this update:
  • chromium-150.0.7871.128-1.fc44
Update description:

Update to 150.0.7871.128

* CVE-2026-15899: Use after free in CameraCapture * CVE-2026-15900: Use after free in GPU * CVE-2026-15901: Use after free in Network * CVE-2026-15902: Use after free in Cast * CVE-2026-15903: Out of bounds read and write in V8 * CVE-2026-15904: Use after free in Ozone * CVE-2026-15905: Use after free in Aura

chromium-150.0.7871.128-1.el9

3 days 11 hours ago
FEDORA-EPEL-2026-a72ac31b48 Packages in this update:
  • chromium-150.0.7871.128-1.el9
Update description:

Update to 150.0.7871.128

* CVE-2026-15899: Use after free in CameraCapture * CVE-2026-15900: Use after free in GPU * CVE-2026-15901: Use after free in Network * CVE-2026-15902: Use after free in Cast * CVE-2026-15903: Out of bounds read and write in V8 * CVE-2026-15904: Use after free in Ozone * CVE-2026-15905: Use after free in Aura
Checked
37 minutes 34 seconds ago