Fedora Security Advisories

python-uv-build-0.12.19-1.fc43 ruff-0.16.9-1.fc43 rust-libcst-1.9.0-1.fc43 rust-libcst_derive-1.9.0-1.fc43 rust-salsa-0.28.5-1.fc43 rust-salsa-macro-rules-0.28.5-1.fc43 rust-salsa-macros-0.28.5-1.fc43 ty-0.0.84-1.fc43 uv-0.12.19-1.fc43

5 days 2 hours ago
FEDORA-2026-056196047a Packages in this update:
  • python-uv-build-0.12.19-1.fc43
  • ruff-0.16.9-1.fc43
  • rust-libcst-1.9.0-1.fc43
  • rust-libcst_derive-1.9.0-1.fc43
  • rust-salsa-0.28.5-1.fc43
  • rust-salsa-macro-rules-0.28.5-1.fc43
  • rust-salsa-macros-0.28.5-1.fc43
  • ty-0.0.84-1.fc43
  • uv-0.12.19-1.fc43
Update description:

Update the libcst/libcst_derive crates to 1.9.0. Update the salsa/salsa-macros/salsa-macro-rules crates to 0.28.5, fixing a use-after-free bug, GHSA-xc3w-55vh-cw3w.

Update ruff to 0.16.9 and ty to 0.0.84, fixing GHSA-vxvm-j4xq-q7m4, which could result in arbitrary code execution when typechecking untrusted code.

Update uv and python-uv-build to 0.12.9.

python-uv-build-0.12.19-1.fc44 ruff-0.16.9-1.fc44 rust-libcst-1.9.0-1.fc44 rust-libcst_derive-1.9.0-1.fc44 rust-salsa-0.28.5-1.fc44 rust-salsa-macro-rules-0.28.5-1.fc44 rust-salsa-macros-0.28.5-1.fc44 ty-0.0.84-1.fc44 uv-0.12.19-1.fc44

5 days 2 hours ago
FEDORA-2026-407b957a3b Packages in this update:
  • python-uv-build-0.12.19-1.fc44
  • ruff-0.16.9-1.fc44
  • rust-libcst-1.9.0-1.fc44
  • rust-libcst_derive-1.9.0-1.fc44
  • rust-salsa-0.28.5-1.fc44
  • rust-salsa-macro-rules-0.28.5-1.fc44
  • rust-salsa-macros-0.28.5-1.fc44
  • ty-0.0.84-1.fc44
  • uv-0.12.19-1.fc44
Update description:

Update the libcst/libcst_derive crates to 1.9.0. Update the salsa/salsa-macros/salsa-macro-rules crates to 0.28.5, fixing a use-after-free bug, GHSA-xc3w-55vh-cw3w.

Update ruff to 0.16.9 and ty to 0.0.84, fixing GHSA-vxvm-j4xq-q7m4, which could result in arbitrary code execution when typechecking untrusted code.

Update uv and python-uv-build to 0.12.9.

python-uv-build-0.12.19-1.fc45 ruff-0.16.9-1.fc45 rust-libcst-1.9.0-1.fc45 rust-libcst_derive-1.9.0-1.fc45 rust-salsa-0.28.5-1.fc45 rust-salsa-macro-rules-0.28.5-1.fc45 rust-salsa-macros-0.28.5-1.fc45 ty-0.0.84-1.fc45 uv-0.12.19-1.fc45

5 days 2 hours ago
FEDORA-2026-d1044d27b7 Packages in this update:
  • python-uv-build-0.12.19-1.fc45
  • ruff-0.16.9-1.fc45
  • rust-libcst-1.9.0-1.fc45
  • rust-libcst_derive-1.9.0-1.fc45
  • rust-salsa-0.28.5-1.fc45
  • rust-salsa-macro-rules-0.28.5-1.fc45
  • rust-salsa-macros-0.28.5-1.fc45
  • ty-0.0.84-1.fc45
  • uv-0.12.19-1.fc45
Update description:

Update the libcst/libcst_derive crates to 1.9.0. Update the salsa/salsa-macros/salsa-macro-rules crates to 0.28.5, fixing a use-after-free bug, GHSA-xc3w-55vh-cw3w.

Update ruff to 0.16.9 and ty to 0.0.84, fixing GHSA-vxvm-j4xq-q7m4, which could result in arbitrary code execution when typechecking untrusted code.

Update uv and python-uv-build to 0.12.9.

golang-x-image-0.46.0-2.fc46

5 days 4 hours ago
FEDORA-2026-2d6aee1dc4 Packages in this update:
  • golang-x-image-0.46.0-2.fc46
Update description:

Automatic update for golang-x-image-0.46.0-2.fc46.

Changelog * Fri Sep 25 2026 Álex Sáez <asm@redhat.com> - 0.46.0-2 - Add __requires_exclude * Fri Sep 25 2026 Packit <hello@packit.dev> - 0.46.0-1 - Update to 0.46.0 upstream release - Resolves: rhbz#2514413 - Resolves: rhbz#2515291 - Resolves: rhbz#2513500

golang-x-mod-0.41.0-1.fc46

5 days 5 hours ago
FEDORA-2026-f84c399b38 Packages in this update:
  • golang-x-mod-0.41.0-1.fc46
Update description:

Automatic update for golang-x-mod-0.41.0-1.fc46.

Changelog * Fri Sep 25 2026 Packit <hello@packit.dev> - 0.41.0-1 - Update to 0.41.0 upstream release - Resolves: rhbz#2486558 - Resolves: rhbz#2521732

ntfs-3g-2022.10.3-12.el9

5 days 8 hours ago
FEDORA-EPEL-2026-1843885c69 Packages in this update:
  • ntfs-3g-2022.10.3-12.el9
Update description:

apply upstream patches to resolve NTFS-3G-SA_2026-06-1_20 NTFS-3G-SA_2026-06-1_19 NTFS-3G-SA_2026-06-1_12 NTFS-3G-SA_2026-06-1_11 NTFS-3G-SA_2026-06-1_10 NTFS-3G-SA_2026-06-1_08 NTFS-3G-SA_2026-06-1_07 NTFS-3G-SA_2026-06-1_05

Apply backported fixes for CVE-2026-42616 CVE-2026-42617 CVE-2026-42618 CVE-2026-46569 CVE-2026-46571 CVE-2026-46570 CVE-2026-46572 CVE-2026-56135 CVE-2026-56136

ntfs-3g-2026.9.18-1.el10_4

5 days 9 hours ago
FEDORA-EPEL-2026-6769292d4a Packages in this update:
  • ntfs-3g-2026.9.18-1.el10_4
Update description:

Update to 2026.9.18. ntfs-3g changes:

  • Guard against multiple creator-owner and creator-group ACEs during ACL inheritance.
  • (ntfscat) Fix missing cleanup of opened attribute on error (issue #212).
  • Fix heap out of bounds read/write in ntfs_ie_add_vcn(). (GHSA-r6xj-6488-p8mv, CVE pending)
  • Fix heap data corruption in ntfs_mapping_pairs_decompress_i(). (GHSA-mc3c-983p-wqm8, CVE pending)
  • Fix heap buffer overflow in ntfs_external_attr_find(). (GHSA-wf3w-fjjg-x4w3, CVE pending)
  • Fix heap buffer overflow in ntfs_ea_check_wsldev(). (GHSA-2c97-47cr-9xr8, CVE pending)
  • Fix heap buffer overflow in ntfs_check_restart_area(). (GHSA-xrvx-6jrp-4q3x, CVE pending)
  • Fix denial-of-service in ntfs_inode_attach_all_extents(). (GHSA-jcjj-9262-6j6p, CVE pending)
  • Fix heap buffer overflow in ntfs_same_sid(). (GHSA-x98j-3g35-f59x, CVE pending)
  • Fix heap buffer overflow in ntfs_acl_owner(). (GHSA-pc48-m7cx-qf72, CVE pending) (ntfsresize)
  • Fix stale $MFTMirr data when the first extent of $MFT is relocated (issue #209).

Update to 2026.7.7 to fix: CVE-2026-42616 CVE-2026-42617 CVE-2026-42618 CVE-2026-46569 CVE-2026-46571 CVE-2026-46570 CVE-2026-46572 CVE-2026-56135 CVE-2026-56136

Checked
53 minutes 45 seconds ago