Aggregator

libsoup3-3.6.6-6.fc44

4 days 12 hours ago
FEDORA-2026-55dabf3975 Packages in this update:
  • libsoup3-3.6.6-6.fc44
Update description:

Add patch for CVE-2026-1539 (Also remove Proxy-Authorization header on cross origin redirect)

libsoup3-3.6.6-6.fc45

4 days 12 hours ago
FEDORA-2026-6fb683df94 Packages in this update:
  • libsoup3-3.6.6-6.fc45
Update description:

Automatic update for libsoup3-3.6.6-6.fc45.

Changelog * Thu Mar 19 2026 Milan Crha <mcrha@redhat.com> - 3.6.6-6 - Add patch for CVE-2026-1539 (Also remove Proxy-Authorization header on cross origin redirect) - Resolves: rhbz#2433867

rubygem-json-2.19.2-1.fc44

4 days 12 hours ago
FEDORA-2026-3a7663d43d Packages in this update:
  • rubygem-json-2.19.2-1.fc44
Update description:

New version 2.19.2 is released. This fixes a format string injection vulnerability in JSON.parse, which is now assigned as CVE-2026-33210

kryoptic-1.5.0-2.fc43 pyOpenSSL-26.0.0-1.fc43 python-cryptography-46.0.5-1.fc43 rust-asn1-0.22.0-1.fc43 rust-asn1_derive-0.22.0-1.fc43 rust-cryptoki-0.12.0-2.fc43 rust-cryptoki-sys-0.5.0-2.fc43 rust-wycheproof-0.6.0-1.fc43

4 days 13 hours ago
FEDORA-2026-9d5b9f45ec Packages in this update:
  • kryoptic-1.5.0-2.fc43
  • pyOpenSSL-26.0.0-1.fc43
  • python-cryptography-46.0.5-1.fc43
  • rust-asn1-0.22.0-1.fc43
  • rust-asn1_derive-0.22.0-1.fc43
  • rust-cryptoki-0.12.0-2.fc43
  • rust-cryptoki-sys-0.5.0-2.fc43
  • rust-wycheproof-0.6.0-1.fc43
Update description:
  • Update pyOpenSSL to v26.0.0 (security update)
  • Update python-cryptography to v46.0.5 (dependency of pyOpenSSL 26)
  • Update rust-asn1 to 0.22 (dependency of python-cryptography)
  • Update kryoptic to v1.5 (required for rust-asn1 bump to 0.22)

The security status of this update is only for pyOpenSSL.

localsearch-3.10.2-2.fc43

4 days 14 hours ago
FEDORA-2026-ba6641558a Packages in this update:
  • localsearch-3.10.2-2.fc43
Update description:

Add a patch for several CVEs:

  • CVE-2026-1764 - Heap Buffer Overflow in GNOME localsearch MP3 Extractor
  • CVE-2026-1765 - Heap Buffer Overflow in GNOME localsearch MP3 Extractor (TXXX Tags)
  • CVE-2026-1766 - Heap Buffer Overflow in GNOME localsearch MP3 Extractor (ID3v2.3 COMM Tags)
  • CVE-2026-1767 - Heap Buffer Overflow in GNOME localsearch MP3 Extractor

glib2-2.86.4-2.fc43

4 days 17 hours ago
FEDORA-2026-5637749c07 Packages in this update:
  • glib2-2.86.4-2.fc43
Update description:

Add patch for CVE-2026-0988 (Integer overflow in g_buffered_input_stream_peek() leads to segmentation fault)