Fedora Security Advisories

perl-Authen-SASL-2.1900-1.fc42

2 weeks 1 day ago
FEDORA-2025-fddaaaf9f0 Packages in this update:
  • perl-Authen-SASL-2.1900-1.fc42
Update description:

2.1900 [Fixed] - CVE-2025-40918 (Insecure source of randomness), required addition of dependency on Crypt::URandom [Changed] - Modules Authen::SASL::Perl::CRAM_MD5, Authen::SASL::Perl::DIGEST_MD5 and Authen::SASL::CRAM_MD5 marked as deprecated based on the respective RFC documents; - Update module metadata to point to the new 'perl-authen-sasl' org on GitHub to which the modules moved - Use VERSION declarations in 'package' statements, since our minimum Perl version is 5.14 anyway

clash-meta-1.19.12-1.fc42

2 weeks 4 days ago
FEDORA-2025-b4a1689983 Packages in this update:
  • clash-meta-1.19.12-1.fc42
Update description:

upgrade to 1.19.12 Mitigating remote code execution vulnerabilities using systemd sandboxing features.

varnish-7.5.0-4.fc41

2 weeks 6 days ago
FEDORA-2025-f7e5d2e40f Packages in this update:
  • varnish-7.5.0-4.fc41
Update description:

Security: This update includes fixes for CVE-2025-47905 aka VSV00016: A client-side desync vulnerability can be triggered in Varnish Cache. This vulnerability can be triggered under specific circumstances involving malformed HTTP/1 chunked requests.

Checked
38 minutes 50 seconds ago