4 days 14 hours ago
It was discovered that Bind incorrectly accepted NSEC3 records whose signer
name did not match the owning zone. A remote attacker could possibly use
this issue to perform NSEC3 impersonation attacks, bypassing DNSSEC
validation. (CVE-2026-10723)
It was discovered that Bind incorrectly handled Key Records using the
PRIVATEDNS algorithm. A remote attacker could possibly use this issue to
cause Bind to crash, resulting in a denial of service. (CVE-2026-10822)
It was discovered that Bind incorrectly handled wildcard CNAME expansion in
Response Policy Zones. A remote attacker could possibly use this issue to
bypass configured RPZ policies. (CVE-2026-11331)
It was discovered that Bind performed unnecessary validation of DNSSEC
signed records. A remote attacker could possibly use this issue to cause
Bind to use excessive resources, leading to a denial of service. This issue
only affected Ubuntu 26.04 LTS. (CVE-2026-11605)
It was discovered that Bind incorrectly tracked memory usage in the DNS
cache. A remote attacker could possibly use this issue to cause Bind to use
memory beyond configured limits, leading to a denial of service.
(CVE-2026-11622)
It was discovered that Bind incorrectly handled signed wildcard records
with label count discrepancies and RRSIG validation. A remote attacker
could possibly use this issue to perform cache poisoning attacks.
(CVE-2026-11721)
It was discovered that Bind incorrectly handled certain CNAME and DNAME
record orderings in the resolver. A remote attacker could possibly use this
issue to cause Bind to crash, resulting in a denial of service.
(CVE-2026-12617)
It was discovered that Bind incorrectly validated out-of-zone NSEC next
owner names during DNSSEC validation. A remote attacker could possibly use
this issue to bypass DNSSEC validation. (CVE-2026-13321)
4 days 17 hours ago
FEDORA-EPEL-2026-f45034028f
Packages in this update:
Update description:
Update the bundled github.com/go-chi/chi/v5 to v5.3.1, which is outside the
range affected by CVE-2026-72815, CVE-2026-72816 and CVE-2026-72817 (IP
spoofing via chi's RealIP middleware).
opkssh bundles only chi's root router package and never the affected
middleware package, so the vulnerable code was not actually shipped in any
opkssh build.
4 days 17 hours ago
FEDORA-EPEL-2026-8d8aa891da
Packages in this update:
Update description:
Update the bundled github.com/go-chi/chi/v5 to v5.3.1, which is outside the
range affected by CVE-2026-72815, CVE-2026-72816 and CVE-2026-72817 (IP
spoofing via chi's RealIP middleware).
opkssh bundles only chi's root router package and never the affected
middleware package, so the vulnerable code was not actually shipped in any
opkssh build.
4 days 17 hours ago
FEDORA-2026-8d9ba295e0
Packages in this update:
Update description:
Update the bundled github.com/go-chi/chi/v5 to v5.3.1, which is outside the
range affected by CVE-2026-72815, CVE-2026-72816 and CVE-2026-72817 (IP
spoofing via chi's RealIP middleware).
opkssh bundles only chi's root router package and never the affected
middleware package, so the vulnerable code was not actually shipped in any
opkssh build.
4 days 17 hours ago
FEDORA-2026-f5a5073561
Packages in this update:
Update description:
Update the bundled github.com/go-chi/chi/v5 to v5.3.1, which is outside the
range affected by CVE-2026-72815, CVE-2026-72816 and CVE-2026-72817 (IP
spoofing via chi's RealIP middleware).
opkssh bundles only chi's root router package and never the affected
middleware package, so the vulnerable code was not actually shipped in any
opkssh build.
4 days 17 hours ago
USN-8093-1 fixed a vulnerability in libssh. This update provides
the corresponsing fix for Ubuntu 26.04 LTS.
Original advisory details:
It was discovered that libssh incorrectly performed bounds checking when
processing SFTP extensions. If a client application queried extension data out
of bounds, it could cause the application to crash, resulting in a denial of
service, or exhibit unintended behavior.
4 days 18 hours ago
USN 8113-1 fixed vulnerabilities in tiff. This update
provides the corresponding fixes for Ubuntu 26.04 LTS.
Original advisory details:
It was discovered that LibTIFF did not properly handle memory when
processing certain images. An attacker could possibly use this issue to
cause LibTIFF to crash, resulting in a denial of service. (CVE-2025-61143)
It was discovered that LibTIFF did not properly handle memory when
processing malformed TIFF directories. An attacker could possibly use this
issue to cause LibTIFF to crash, resulting in a denial of service.
(CVE-2025-61144)
4 days 19 hours ago
FEDORA-2026-fc11919789
Packages in this update:
Update description:
Implement buffer stride support for PipeWire camera.
- Update to latest upstream (154.0)
- Enabled Wayland session restore on KDE.
4 days 22 hours ago
4 days 22 hours ago
5 days 2 hours ago
FEDORA-EPEL-2026-f78a6b3cf2
Packages in this update:
Update description:
Update to upstream 2.6.2, including security fixes for GHSA-rh46-vc3j-w2w3 and GHSA-g892-p242-8g86.
5 days 2 hours ago
FEDORA-EPEL-2026-0194a75a00
Packages in this update:
Update description:
Update to upstream 2.6.2, including security fixes for GHSA-rh46-vc3j-w2w3 and GHSA-g892-p242-8g86.
5 days 2 hours ago
FEDORA-2026-73f5dc988f
Packages in this update:
Update description:
Update to upstream 2.6.2, including security fixes for GHSA-rh46-vc3j-w2w3 and GHSA-g892-p242-8g86.
5 days 2 hours ago
FEDORA-EPEL-2026-56bfe89982
Packages in this update:
Update description:
Update to upstream 2.6.2, including security fixes for GHSA-rh46-vc3j-w2w3 and GHSA-g892-p242-8g86.
5 days 2 hours ago
FEDORA-2026-ba51600ab3
Packages in this update:
Update description:
Update to upstream 2.6.2, including security fixes for GHSA-rh46-vc3j-w2w3 and GHSA-g892-p242-8g86.
5 days 2 hours ago
FEDORA-EPEL-2026-cba2df79a1
Packages in this update:
Update description:
Update to upstream 2.6.2, including security fixes for GHSA-rh46-vc3j-w2w3 and GHSA-g892-p242-8g86.
5 days 5 hours ago
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- x86 architecture;
- InfiniBand drivers;
- Network drivers;
- Mellanox network drivers;
- File systems infrastructure;
- IPv4 networking;
- Network traffic control;
- TCP network protocol;
- B.A.T.M.A.N. meshing protocol;
- IPv6 networking;
- Multipath TCP;
- Netfilter;
- RxRPC session sockets;
- SCTP protocol;
- SMC sockets;
(CVE-2026-43083, CVE-2026-43197, CVE-2026-43198, CVE-2026-43465,
CVE-2026-46242, CVE-2026-46325, CVE-2026-46331, CVE-2026-52914,
CVE-2026-52924, CVE-2026-52931, CVE-2026-53151, CVE-2026-53176,
CVE-2026-53212, CVE-2026-53215, CVE-2026-53225, CVE-2026-53228,
CVE-2026-53359)
5 days 5 hours ago
Version:next-20260818 (linux-next)
Released:2026-08-18
5 days 5 hours ago
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- x86 architecture;
- InfiniBand drivers;
- Media drivers;
- Network drivers;
- Mellanox network drivers;
- Texas Instruments network drivers;
- NVME drivers;
- File systems infrastructure;
- SMB network file system;
- IPv4 networking;
- Network traffic control;
- TCP network protocol;
- Locking primitives;
- Memory management;
- IPv6 networking;
- Multipath TCP;
- Netfilter;
- RxRPC session sockets;
- SCTP protocol;
- SMC sockets;
(CVE-2026-31405, CVE-2026-31414, CVE-2026-31501, CVE-2026-31589,
CVE-2026-31633, CVE-2026-31636, CVE-2026-31705, CVE-2026-43198,
CVE-2026-43379, CVE-2026-43465, CVE-2026-43499, CVE-2026-46113,
CVE-2026-46137, CVE-2026-46242, CVE-2026-46331, CVE-2026-52924,
CVE-2026-52989, CVE-2026-53086, CVE-2026-53131, CVE-2026-53176,
CVE-2026-53212, CVE-2026-53225, CVE-2026-53228, CVE-2026-53359)
5 days 5 hours ago
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- x86 architecture;
- InfiniBand drivers;
- Network drivers;
- Network traffic control;
- IPv4 networking;
- IPv6 networking;
- Netfilter;
- RxRPC session sockets;
- SCTP protocol;
(CVE-2026-46331, CVE-2026-52924, CVE-2026-53131, CVE-2026-53151,
CVE-2026-53175, CVE-2026-53176, CVE-2026-53186, CVE-2026-53212,
CVE-2026-53215, CVE-2026-53216, CVE-2026-53221, CVE-2026-53224,
CVE-2026-53225, CVE-2026-53228, CVE-2026-53246, CVE-2026-53247,
CVE-2026-53260, CVE-2026-53359)