Aggregator
DSA-6525-1 wordpress - security update
DSA-6526-1 dovecot - security update
DSA-6523-1 libheif - security update
USN-8825-1: Requests vulnerability
It was discovered that Requests did not correctly handle generating
random temporary file paths. An attacker could possibly use this issue
to execute arbitrary code.
cri-o1.36-1.36.6-1.fc43
FEDORA-2026-0025579bc9
Packages in this update:
- cri-o1.36-1.36.6-1.fc43
- Update to release v1.36.6
- Resolves: rhbz#2537559
- Resolves CVE-2026-17113: rhbz#2523493
- Resolves: rhbz#2540885
cri-o1.36-1.36.6-1.fc44
FEDORA-2026-f5c88f763a
Packages in this update:
- cri-o1.36-1.36.6-1.fc44
- Update to release v1.36.6
- Resolves: rhbz#2537559
- Resolves CVE-2026-17113: rhbz#2523493
- Resolves: rhbz#2540885
cri-o1.36-1.36.6-1.fc45
FEDORA-2026-77abfa2cdd
Packages in this update:
- cri-o1.36-1.36.6-1.fc45
- Update to release v1.36.6
- Resolves: rhbz#2537559
- Resolves CVE-2026-17113: rhbz#2523493
- Resolves: rhbz#2540885
cri-o1.36-1.36.6-1.fc46
FEDORA-2026-05f65b07d7
Packages in this update:
- cri-o1.36-1.36.6-1.fc46
Automatic update for cri-o1.36-1.36.6-1.fc46.
Changelog * Sun Sep 27 2026 Bradley G Smith <bradley.g.smith@gmail.com> - 1.36.6-1 - Update to release v1.36.6 - Resolves: rhbz#2537559 - Resolves CVE-2026-17113: rhbz#2523493 - Resolves: rhbz#2540885 * Sun Sep 27 2026 Bradley G Smith <bradley.g.smith@gmail.com> - 1.36.5-2 - Define --pinns_path - pinns_path is set to the libexec path for pinns7.3-rc5: mainline
DSA-6522-1 exim4 - security update
DSA-6520-1 lemonldap-ng - security update
DSA-6521-1 ruby-oj - security update
ruff-0.16.9-1.fc46 rust-salsa-0.28.5-1.fc46 rust-salsa-macro-rules-0.28.5-1.fc46 rust-salsa-macros-0.28.5-1.fc46 ty-0.0.84-1.fc46
FEDORA-2026-77f6cda09a
Packages in this update:
- ruff-0.16.9-1.fc46
- rust-salsa-0.28.5-1.fc46
- rust-salsa-macro-rules-0.28.5-1.fc46
- rust-salsa-macros-0.28.5-1.fc46
- ty-0.0.84-1.fc46
Update the salsa/salsa-macros/salsa-macro-rules crates to 0.28.5, fixing a use-after-free bug, GHSA-xc3w-55vh-cw3w.
Update ruff to 0.16.9 and ty to 0.0.84, fixing GHSA-vxvm-j4xq-q7m4, which could result in arbitrary code execution when typechecking untrusted code.
nagios-plugins-2.5-2.fc45
FEDORA-2026-c213ad9471
Packages in this update:
- nagios-plugins-2.5-2.fc45
Update to upstream (bz#2453492) check_icmp: host-count overflow leads to heap buffer overflow (bz#2513957) Update 0012-fix-perl-ntp-ipv6.patch to allow uppercase hostnames (bz#2500542) Added perl-Math-BigInt as dependency for nagios-plugins-ssl_validity (bz#2439960)
dnf5-5.4.6.0-2.fc45
FEDORA-2026-4284af73e4
Packages in this update:
- dnf5-5.4.6.0-2.fc45
- Update translations from weblate
- spec: Symlink microdnf(8) and yum(8) manual pages to dnf5(8)
- Update FSF's address in GPL-2.0 disclaimers
- Update LGPL-2.1 and GPL-2.0 texts to current FSF's wording
- fix: DNF5_FORCE_COLUMNS / non-TTY width in transaction table
- progressbar: Report progress to terminal taskbar via OSC 9;4
- Makefile: Add FEDORA_VERSION to unify defaults
- spec: Require GCC ≥ 14.1 for std::chrono::parse()
- dnf5daemon: Hide invalid offline transactions
- Clarify plugin source language options
- needs-restarting: Configure extra packages that require a reboot
- VendorChangeManager: Allow empty vendor policies in compact format
- manifest: Log before resolving & after writing files
- manifest: Print transaction table on resolve
pgbouncer-1.26.0-1.el10_4
FEDORA-EPEL-2026-39a80c0763
Packages in this update:
- pgbouncer-1.26.0-1.el10_4
Update to 1.26.0.
pgbouncer-1.26.0-1.el9
FEDORA-EPEL-2026-62de33e876
Packages in this update:
- pgbouncer-1.26.0-1.el9
Update to 1.26.0.
pgbouncer-1.26.0-1.el10_2
FEDORA-EPEL-2026-237c7e9b4d
Packages in this update:
- pgbouncer-1.26.0-1.el10_2
Update to 1.26.0.
pgbouncer-1.26.0-1.fc44
FEDORA-2026-99030761e8
Packages in this update:
- pgbouncer-1.26.0-1.fc44
Update to 1.26.0.