Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora 42 has released updates for two packages: cef and k9s. The cef update includes a bump to version 145.0.28^chromium145.0.7632.159, which fixes several security vulnerabilities, including integer overflows and heap buffer overflows in various Chromium components. The k9s update is a newer version of the Kubernetes CLI tool, with no significant changes noted.

Fedora 42 Update: cef-145.0.28^chromium145.0.7632.159-1.fc42
Fedora 42 Update: k9s-0.50.18-1.fc42

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has issued security updates for the Chromium Embedded Framework on both Fedora 43 and 44, bumping the packages to version 145.0.28 with chromium 145.0.7632.159 and addressing a range of CVEs that include integer overflows in ANGLE, Skia and V8, as well as heap buffer overflows in PDFium, WebCodecs and Media. The cef updates also note changes such as the adoption of C++20 for libcef and link to Bug #2437035 for more details. In addition, Fedora 43 received a patch for Vim 9.2.112 that fixes multiple CVEs (CVE‑2026‑28417 through CVE‑2026‑28422) involving command injection, buffer overflows and information disclosure in plugins and terminal handling, and users can apply these advisories with the dnf command dnf upgrade --advisory; all packages are signed with the Fedora Project GPG key.

Fedora 43 Update: cef-145.0.28^chromium145.0.7632.159-1.fc43
Fedora 43 Update: vim-9.2.112-2.fc43
Fedora 44 Update: cef-145.0.28^chromium145.0.7632.159-1.fc44

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has released several security updates for various packages, including freerdp, libsixel, opensips, and yt-dlp. These updates address multiple vulnerabilities, such as CVE-2026-26965, CVE-2025-61146, and CVE-2026-26331, which affect the stability and security of Fedora systems

Fedora 44 Update: freerdp-3.23.0-1.fc44
Fedora 42 Update: libsixel-1.10.5-5.fc42
Fedora 42 Update: opensips-3.5.9-2.fc42
Fedora 43 Update: libsixel-1.10.5-5.fc43
Fedora 44 Update: yt-dlp-2026.02.21-1.fc44

Fedora Linux 9271 Published by Philipp Esselbach 0

Three Fedora updates have been released to address security vulnerabilities: yt-dlp, coturn, and valkey. The update for yt-dlp fixes CVE-2026-26331 and resolves Bug #2441709, while the update for coturn addresses multiple security issues and fixes a bug related to IPv4-mapped IPv6 bypassing denied-peer-ip ACLs. Additionally, updates have been released for valkey to address two security vulnerabilities: CVE-2025-67733 and CVE-2026-21863, as well as several non-security bugs.

Fedora 42 Update: yt-dlp-2026.02.21-1.fc42
Fedora 42 Update: coturn-4.9.0-1.fc42
Fedora 42 Update: valkey-8.0.7-1.fc42
Fedora 42 Update: php-zumba-json-serializer-3.2.4-1.fc42
Fedora 43 Update: coturn-4.9.0-1.fc43
Fedora 43 Update: valkey-8.1.6-1.fc43
Fedora 43 Update: php-zumba-json-serializer-3.2.4-1.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has released several updates for various packages, including Erlang and Python Pillow, which address security vulnerabilities. The Erlang update fixes a vulnerability in the tftp_file modules that can lead to information disclosure via relative path traversal (CVE-2026-21620). The Python Pillow update addresses an out-of-bounds write vulnerability (CVE-2026-25990) that could allow attackers to execute malicious code.

Fedora 42 Update: erlang-26.2.5.17-1.fc42
Fedora 42 Update: python-pillow-11.1.0-3.fc42
Fedora 43 Update: erlang-26.2.5.17-1.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has released several security updates to address vulnerabilities in various packages, including Chromium Embedded Framework (CEF), NextCloud, pgAdmin4, Python 3.12, and Django. The updates aim to fix issues such as heap buffer overflows, type confusion, use-after-free errors, and SQL injection vulnerabilities.

Fedora 42 Update: cef-145.0.25^chromium145.0.7632.75-4.fc42
Fedora 42 Update: nextcloud-32.0.6-1.fc42
Fedora 42 Update: pgadmin4-9.12-2.fc42
Fedora 43 Update: python3.12-3.12.12-4.fc43
Fedora 43 Update: nextcloud-32.0.6-1.fc43
Fedora 43 Update: pgadmin4-9.12-2.fc43
Fedora 43 Update: cef-145.0.25^chromium145.0.7632.75-4.fc43
Fedora 42 Update: python-django4.2-4.2.28-1.fc42

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora 43 has received two updates: chromium-145.0.7632.116-1.fc43 and gimp-3.0.8-5.fc43, both addressing security issues. The chromium update fixes three vulnerabilities (CVE-2026-3061, CVE-2026-3062, and CVE-2026-3063) that affect the browser's media, tint, and DevTools functionality. The gimp update resolves a vulnerability in the PSD file loader (CVE-2026-2239), which could cause a denial of service attack.

Fedora 43 Update: chromium-145.0.7632.116-1.fc43
Fedora 43 Update: gimp-3.0.8-5.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora Linux 44 Beta Candidate 1.2 has been released with new versions of GNOME, KDE Plasma, and the Linux kernel series. This beta candidate is crucial for ironing out issues that may arise when these components converge, such as a recent patch in GNOME 50 that can cause a black screen on older GPUs. To help test the release, users can access various resources including pre-built ISOs, test cases, and support channels like the Fedora Quality chat channel and quality tag on Discourse. The community is encouraged to submit results and flag any blockers before the final freeze in two weeks, as this will help ensure the quality of the release.

Fedora Linux 9271 Published by Philipp Esselbach 0

Several security updates have been released for Fedora 42 and Fedora 43. The updates include fixes for vulnerabilities in Python, including potential SQL injections and denial-of-service attacks, as well as updates to Django, a high-level Python Web framework. The updates also include security fixes for CVE-2025-15366, CVE-2025-15367, CVE-2026-0865, and CVE-2026-1299, among others.

Fedora 42 Update: python-django5-5.2.11-1.fc42
Fedora 42 Update: python3.13-3.13.12-1.fc42
Fedora 42 Update: python3-docs-3.13.12-1.fc42
Fedora 42 Update: python3.9-3.9.25-6.fc42
Fedora 43 Update: python-django5-5.2.11-1.fc43
Fedora 43 Update: python3.9-3.9.25-6.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Remi Collet has made available PHP 8.5.4RC1 and 8.4.19RC1 for developers to test language changes before they hit production, through the Remi Test Repositories on Fedora and RHEL. To use these releases, you need to enable the Remi repositories first by running a few commands in your terminal - this involves installing the dnf-plugins-core package and enabling the remi-modular-test and remi-test repos. If your system already has PHP installed, you can install the RC as an SCL without replacing your default version, and then switch to it using update-alternatives; or if you want to use the new version system-wide, you can swap the module directly with dnf. When you're done testing, reverting is easy - just switch back to a stable version and run an update, and the old packages will replace the RC ones without affecting other system components.

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has issued several security updates for various packages, including nss-3.120.1-1.fc42, firefox-148.0-1.fc42, python3.15-3.15.0~a6-1.fc42, udisks2-2.11.1-1.fc43, libmaxminddb-1.13.1-1.fc43, gh-2.87.0-2.fc43, and freerdp-3.23.0-1.fc43. These updates address vulnerabilities in the packages, including CVE-2025-15366, CVE-2026-0672, CVE-2026-0865, CVE-2026-1299, and others.

Fedora 42 Update: nss-3.120.1-1.fc42
Fedora 42 Update: firefox-148.0-1.fc42
Fedora 42 Update: python3.15-3.15.0~a6-1.fc42
Fedora 43 Update: udisks2-2.11.1-1.fc43
Fedora 43 Update: libmaxminddb-1.13.1-1.fc43
Fedora 43 Update: gh-2.87.0-2.fc43
Fedora 43 Update: python3.15-3.15.0~a6-1.fc43
Fedora 43 Update: freerdp-3.23.0-1.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has released several security updates for its Fedora 43 and Fedora 42 versions. The updates include patches for various vulnerabilities, including a buffer overflow in MUNGE (CVE-2026-25506), multiple issues with Python3.14 (CVEs 2025-11468, 2026-0672, etc.), and a netbeans specialKeys stack buffer overflow in vim (CVE-2026-26269).

Fedora 43 Update: firefox-148.0-1.fc43
Fedora 43 Update: opentofu-1.11.5-1.fc43
Fedora 43 Update: 389-ds-base-3.1.4-7.fc43
Fedora 43 Update: vim-9.2.045-1.fc43
Fedora 43 Update: munge-0.5.18-1.fc43
Fedora 43 Update: python3.14-3.14.3-1.fc43
Fedora 43 Update: python3-docs-3.14.3-1.fc43
Fedora 42 Update: vim-9.2.045-1.fc42
Fedora 42 Update: munge-0.5.18-1.fc42
Fedora 42 Update: chromium-145.0.7632.109-1.fc42

Fedora Linux 9271 Published by Philipp Esselbach 0

The first candidate for Fedora Linux 44 Beta is now live with a fresh GNOME 50 stack alongside Linux kernel 6.19.2. This beta cycle focuses on ironing out surprises that surface when new desktop environments and kernels converge, particularly issues related to the recent patch in GNOME 50. Testers are asked to dive into the full test plan, submit results, and flag any blockers before the final freeze. By doing so, they'll help ensure the quality of Fedora 44's release by identifying potential issues and submitting their findings through the official Summary page.

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora 43 has received two security updates: one for yt-dlp, a command-line program to download videos from online platforms, and another for chromium, an open-source web browser. The yt-dlp update fixes a vulnerability that allowed arbitrary command injection via malicious URLs when using the --netrc-cmd option. The chromium update addresses three vulnerabilities: CVE-2026-2648, a heap buffer overflow in PDFium; CVE-2026-2649, an integer overflow in V8; and CVE-2026-2650, another heap buffer overflow in Media.

Fedora 43 Update: yt-dlp-2026.02.21-1.fc43
Fedora 43 Update: chromium-145.0.7632.109-1.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora 43 has been updated to fix security vulnerabilities, including a Denial of Service (DoS) via crafted input during barcode decoding in MuPDF. The updates include new versions of qpdfview (0.5.0-25.fc43), mupdf (1.27.1-4.fc43), zathura-pdf-mupdf (0.4.4-9.fc43), and python-PyMuPDF (1.27.1-2.fc43).

Fedora 43 Update: qpdfview-0.5.0-25.fc43
Fedora 43 Update: mupdf-1.27.1-4.fc43
Fedora 43 Update: zathura-pdf-mupdf-0.4.4-9.fc43
Fedora 43 Update: python-PyMuPDF-1.27.1-2.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Several security updates have been released for Fedora 42 and 43, addressing issues in packages such as mupdf, rust-ambient-id, uv, python-uv-build, python-pyasn1, and python3.13. The updates include patches for bugs like CVE-2026-25556, CVE-2026-25727, and CVE-2026-23490, which could lead to denial-of-service attacks or memory exhaustion.

Fedora 42 Update: mupdf-1.26.3-5.fc42
Fedora 42 Update: rust-ambient-id-0.0.10-1.fc42
Fedora 42 Update: uv-0.10.2-1.fc42
Fedora 42 Update: python-uv-build-0.10.2-1.fc42
Fedora 42 Update: python-pyasn1-0.6.2-1.fc42
Fedora 43 Update: python3.13-3.13.12-1.fc43
Fedora 43 Update: python-pyasn1-0.6.2-1.fc43

Fedora Linux 9271 Published by Philipp Esselbach 0

Fedora has released multiple security updates for various packages, including microcode_ctl, python3.14, roundcubemail, and azure-cli. The updates address vulnerabilities such as use after free in CSS, heap buffer overflow in Codecs, and insufficient policy enforcement in Frames. These updates are recommended to prevent potential Denial of Service attacks, SQL injection, and other security risks. Users can refer to the Fedora Security Advisories for detailed information about each update.

Fedora 42 Update: microcode_ctl-2.1-70.1.fc42
Fedora 42 Update: python3.14-3.14.3-1.fc42
Fedora 42 Update: roundcubemail-1.6.13-1.fc42
Fedora 42 Update: python-azure-core-1.38.0-2.fc42
Fedora 42 Update: azure-cli-2.68.0-2.fc42
Fedora 43 Update: chromium-145.0.7632.75-1.fc43
Fedora 43 Update: microcode_ctl-2.1-71.1.fc43
Fedora 43 Update: python-azure-core-1.38.0-2.fc43
Fedora 43 Update: roundcubemail-1.6.13-1.fc43
Fedora 43 Update: azure-cli-2.81.0-2.fc43