Aggregator

USN-8645-1: Linux kernel (Oracle) vulnerabilities

18 hours 11 minutes ago
Siebe Devroe, Héloïse Gollier, and Mathy Vanhoef discovered that the WiFi implementation in the Linux kernel did not properly handle aggregated frames in mesh networks, due to an incorrect fix for CVE-2020-24588. A physically proximate attacker could use this issue to inject packets. (CVE-2025-27558) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - x86 architecture; - Cryptographic API; - GPU drivers; - InfiniBand drivers; - Media drivers; - NVIDIA Tegra memory controller driver; - Network drivers; - STMicroelectronics network drivers; - NVME drivers; - File systems infrastructure; - Ext4 file system; - OCFS2 file system; - IPv4 networking; - Network traffic control; - TCP network protocol; - Locking primitives; - B.A.T.M.A.N. meshing protocol; - Ceph Core library; - IPv6 networking; - Multipath TCP; - Netfilter; - SCTP protocol; - SMC sockets; - TIPC protocol; (CVE-2021-47354, CVE-2021-47378, CVE-2024-38612, CVE-2026-31405, CVE-2026-31414, CVE-2026-31448, CVE-2026-31649, CVE-2026-31657, CVE-2026-31668, CVE-2026-43071, CVE-2026-43198, CVE-2026-43493, CVE-2026-43499, CVE-2026-46266, CVE-2026-46331, CVE-2026-52914, CVE-2026-52924, CVE-2026-52931, CVE-2026-52955, CVE-2026-52982, CVE-2026-52986, CVE-2026-52993, CVE-2026-53002, CVE-2026-53006, CVE-2026-53043, CVE-2026-53045, CVE-2026-53088, CVE-2026-53176, CVE-2026-53224, CVE-2026-53225, CVE-2026-53228, CVE-2026-53246, CVE-2026-53309, CVE-2026-53359)

USN-8644-1: Linux kernel vulnerabilities

18 hours 14 minutes ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - File systems infrastructure; - OCFS2 file system; - B.A.T.M.A.N. meshing protocol; - SCTP protocol; - TIPC protocol; (CVE-2026-43071, CVE-2026-52914, CVE-2026-52993, CVE-2026-53043, CVE-2026-53224, CVE-2026-53246, CVE-2026-53309)

USN-8643-1: Linux kernel vulnerabilities

18 hours 27 minutes ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network drivers; - Open vSwitch; - SCTP protocol; (CVE-2026-53224, CVE-2026-53246, CVE-2026-53247, CVE-2026-64531)

USN-8641-1: .NET vulnerabilities

21 hours 32 minutes ago
Miha Zupan discovered that .NET did not properly interpret certain HTTP requests. An attacker could possibly use this issue to perform request smuggling and bypass a security feature. (CVE-2026-62899) Ivan Demchuk discovered that .NET did not properly handle the removal of sensitive information before storage or transfer. An attacker could possibly use this issue to disclose sensitive information. (CVE-2026-62900) Kevin Gosse discovered that .NET did not properly check an input for a loop condition. An attacker could possibly use this issue to cause a denial of service. (CVE-2026-62901) Kevin Gosse discovered that .NET did not properly perform error checking when securing shared resources used for diagnostics IPC. An attacker could possibly use this issue to elevate privileges. (CVE-2026-62909)

perl-CGI-Session-4.49-1.fc45

21 hours 38 minutes ago
FEDORA-2026-65aea3d269 Packages in this update:
  • perl-CGI-Session-4.49-1.fc45
Update description:

Automatic update for perl-CGI-Session-4.49-1.fc45.

Changelog * Tue Aug 18 2026 Jitka Plesnikova <jplesnik@redhat.com> - 4.49-1 - 4.49 bump (rhbz#2510691) - Fix CVE-2026-56016 (rhbz#2495886)

proftpd-1.3.9d-1.fc44

21 hours 39 minutes ago
FEDORA-2026-f073efe2f3 Packages in this update:
  • proftpd-1.3.9d-1.fc44
Update description:

Current upstream maintenance release, with a handful of potentially security-related bugfixes.

proftpd-1.3.9d-1.fc43

21 hours 39 minutes ago
FEDORA-2026-0abbe10cdc Packages in this update:
  • proftpd-1.3.9d-1.fc43
Update description:

Current upstream maintenance release, with a handful of potentially security-related bugfixes.

proftpd-1.3.9d-1.el10_2

21 hours 39 minutes ago
FEDORA-EPEL-2026-e41f65b848 Packages in this update:
  • proftpd-1.3.9d-1.el10_2
Update description:

Current upstream maintenance release, with a handful of potentially security-related bugfixes.

proftpd-1.3.9d-1.el10_3

21 hours 39 minutes ago
FEDORA-EPEL-2026-27142c109a Packages in this update:
  • proftpd-1.3.9d-1.el10_3
Update description:

Current upstream maintenance release, with a handful of potentially security-related bugfixes.

perl-CGI-Session-4.49-1.fc46

21 hours 42 minutes ago
FEDORA-2026-f47e713a34 Packages in this update:
  • perl-CGI-Session-4.49-1.fc46
Update description:

Automatic update for perl-CGI-Session-4.49-1.fc46.

Changelog * Tue Aug 18 2026 Jitka Plesnikova <jplesnik@redhat.com> - 4.49-1 - 4.49 bump (rhbz#2510691) - Fix CVE-2026-56016 (rhbz#2495886)

USN-8642-1: c3p0 vulnerabilities

23 hours 32 minutes ago
It was discovered that c3p0 was vulnerable to remote code execution via maliciously crafted serialized objects and JNDI references. An attacker could use this to execute arbitrary code, bypass security restrictions, or cause a denial of service.

wireshark-4.6.8-1.fc43

1 day ago
FEDORA-2026-adc1870e77 Packages in this update:
  • wireshark-4.6.8-1.fc43
Update description:

New version of wireshark. It includes multiple CVE fixes that do not have the CVE numbers yet.

wireshark-4.6.8-1.fc44

1 day ago
FEDORA-2026-5034844482 Packages in this update:
  • wireshark-4.6.8-1.fc44
Update description:

New version of wireshark. It includes multiple CVE fixes that do not have the CVE numbers yet.