Aggregator
next-20260407: linux-next
usd-26.03-2.fc44
- usd-26.03-2.fc44
Backport fix for CVE-2026-34544 in OpenEXRCore
python-flask-httpauth-4.8.1-1.fc43
- python-flask-httpauth-4.8.1-1.fc43
Update to version 4.8.1 (#2454342)
python-flask-httpauth-4.8.1-1.fc44
- python-flask-httpauth-4.8.1-1.fc44
Update to version 4.8.1 (#2454342)
mingw-LibRaw-0.22.1-1.fc44
- mingw-LibRaw-0.22.1-1.fc44
Update to libraw-0.22.1.
Backport fixes for CVE-2026-5318 and CVE-2026-5342.
NetworkManager-ssh-1.4.4-1.fc43
- NetworkManager-ssh-1.4.4-1.fc43
Add sshpass -P prompt
Fix CVE-2025-9615
mingw-openexr-3.3.9-1.fc42
- mingw-openexr-3.3.9-1.fc42
Update to openexr-3.3.9.
mingw-openexr-3.3.9-1.fc43
- mingw-openexr-3.3.9-1.fc43
Update to openexr-3.3.9.
libpng-1.6.56-1.fc44
- libpng-1.6.56-1.fc44
1.6.56 is release fixes for the following two security vulnerabilities:
-
CVE-2026-33416 (high severity): Use-after-free memory bug in the transparency and palette-handling code. Similar to its predecessor CVE-2026-25646, this latent bug has existed for 25 years. Both Halil Oktay and Ryo Shimada discovered it within days of one another.
-
CVE-2026-33636 (high severity): Out-of-bounds read and write vulnerability in the ARM Neon palette-expansion code. This one was found and fixed by Taegu Ha and has existed since 1.6.36.
The images that trigger these bugs are valid. Users are encouraged to update immediately.
libpng-1.6.56-1.fc43
- libpng-1.6.56-1.fc43
1.6.56 is release fixes for the following two security vulnerabilities:
-
CVE-2026-33416 (high severity): Use-after-free memory bug in the transparency and palette-handling code. Similar to its predecessor CVE-2026-25646, this latent bug has existed for 25 years. Both Halil Oktay and Ryo Shimada discovered it within days of one another.
-
CVE-2026-33636 (high severity): Out-of-bounds read and write vulnerability in the ARM Neon palette-expansion code. This one was found and fixed by Taegu Ha and has existed since 1.6.36.
The images that trigger these bugs are valid. Users are encouraged to update immediately.
libpng-1.6.56-1.fc42
- libpng-1.6.56-1.fc42
1.6.56 is release fixes for the following two security vulnerabilities:
-
CVE-2026-33416 (high severity): Use-after-free memory bug in the transparency and palette-handling code. Similar to its predecessor CVE-2026-25646, this latent bug has existed for 25 years. Both Halil Oktay and Ryo Shimada discovered it within days of one another.
-
CVE-2026-33636 (high severity): Out-of-bounds read and write vulnerability in the ARM Neon palette-expansion code. This one was found and fixed by Taegu Ha and has existed since 1.6.36.
The images that trigger these bugs are valid. Users are encouraged to update immediately.
USN-8152-1: Linux kernel (OEM) vulnerabilities
USN-8148-4: Linux kernel (Real-time) vulnerabilities
USN-8145-3: Linux kernel (GCP) vulnerabilities
USN-8151-1: lambdaisland/uri vulnerability
next-20260406: linux-next
usd-26.03-2.fc45
- usd-26.03-2.fc45
Automatic update for usd-26.03-2.fc45.
Changelog * Mon Apr 6 2026 Benjamin A. Beasley <code@musicinmybrain.net> - 26.03-2 - Backport fix for CVE-2026-34544 in OpenEXRCore - Fixes RHBZ#2454226incus-6.23-2.fc42
- incus-6.23-2.fc42
Update to 6.23
incus-6.23-2.fc43
- incus-6.23-2.fc43
Update to 6.23