Aggregator

USN-8481-1: NSS vulnerability

3 days 21 hours ago
Haruto Kimura discovered that NSS had incorrecty handled parsing PKCS#11 URI escape sequences. An attacker could possibly use this issue to cause NSS to crash, resulting in a denial of service, or obtain sensitive information.

USN-8480-1: SQLite vulnerabilities

3 days 22 hours ago
It was discovered that SQLite incorrectly handled certain memory operations in the FTS5 full-text search extension. An attacker could use this issue to cause SQLite to crash, resulting in a denial of service, or possibly execute arbitrary code.

USN-8479-1: libheif vulnerabilities

4 days ago
It was discovered that libheif incorrectly handled certain crafted HEIF files. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2026-47178) It was discovered that libheif incorrectly validated offsets when decoding certain crafted HEIF files. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 26.04 LTS. (CVE-2026-49271)

python-jiter-0.16.0-1.fc44 rust-jiter-0.16.0-1.fc44

4 days 2 hours ago
FEDORA-2026-a7f46c285f Packages in this update:
  • python-jiter-0.16.0-1.fc44
  • rust-jiter-0.16.0-1.fc44
Update description:

Update rust-jiter to 0.16.0, adding a serde Deserializer implementation; update python-jiter to match. Both packages now use PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

python-jiter-0.16.0-1.fc43 rust-jiter-0.16.0-1.fc43

4 days 2 hours ago
FEDORA-2026-f774d1a878 Packages in this update:
  • python-jiter-0.16.0-1.fc43
  • rust-jiter-0.16.0-1.fc43
Update description:

Update rust-jiter to 0.16.0, adding a serde Deserializer implementation; update python-jiter to match. Both packages now use PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.