Aggregator
6.18.11: stable
6.12.72: longterm
6.6.125: longterm
6.19.1: stable
USN-8022-2: Expat vulnerabilities
USN-8025-2: .NET vulnerability
python-pillow-11.1.0-3.fc42
- python-pillow-11.1.0-3.fc42
Backport fix for CVE-2026-25990.
python-pillow-11.3.0-7.fc43
- python-pillow-11.3.0-7.fc43
Backport fix for CVE-2026-25990.
DSA-6136-1 python-django - security update
mupdf-1.27.1-4.fc43 python-PyMuPDF-1.27.1-2.fc43 qpdfview-0.5.0-25.fc43 zathura-pdf-mupdf-0.4.4-9.fc43
- mupdf-1.27.1-4.fc43
- python-PyMuPDF-1.27.1-2.fc43
- qpdfview-0.5.0-25.fc43
- zathura-pdf-mupdf-0.4.4-9.fc43
mupdf 1.27.1 and dependencies
DSA-6135-1 chromium - security update
libpng-1.6.55-1.fc42
- libpng-1.6.55-1.fc42
Version 1.6.54 [January 12, 2026] Fixed CVE-2026-22695 (medium severity): Heap buffer over-read in png_image_read_direct_scaled. Fixed CVE-2026-22801 (medium severity): Integer truncation causing heap buffer over-read in png_image_write_*.
Version 1.6.55 [February 9, 2026] Fixed CVE-2026-25646 (high severity): Heap buffer overflow in png_set_quantize.
libpng-1.6.55-1.fc43
- libpng-1.6.55-1.fc43
Version 1.6.54 [January 12, 2026] Fixed CVE-2026-22695 (medium severity): Heap buffer over-read in png_image_read_direct_scaled. Fixed CVE-2026-22801 (medium severity): Integer truncation causing heap buffer over-read in png_image_write_*.
Version 1.6.55 [February 9, 2026] Fixed CVE-2026-25646 (high severity): Heap buffer overflow in png_set_quantize.
next-20260213: linux-next
mupdf-1.26.3-5.fc42
- mupdf-1.26.3-5.fc42
fix CVE-2026-25556 (rhbz#2437973)
rsync-3.4.1-4.fc42
- rsync-3.4.1-4.fc42
Fix for CVE-2025-10158
rsync-3.4.1-5.fc43
- rsync-3.4.1-5.fc43
Fix for CVE-2025-10158
python-uv-build-0.10.2-1.fc42 rust-ambient-id-0.0.10-1.fc42 uv-0.10.2-1.fc42
- python-uv-build-0.10.2-1.fc42
- rust-ambient-id-0.0.10-1.fc42
- uv-0.10.2-1.fc42
Update uv and python-uv-build to 0.10.2. There are some minor breaking changes in uv; most users should not have to change anything. See https://github.com/astral-sh/uv/blob/0.10.2/CHANGELOG.md for details. There are no breaking changes to python-uv-build.