Fedora Linux 9307 Published by Philipp Esselbach 0

Three Fedora updates have been released to address security vulnerabilities: yt-dlp, coturn, and valkey. The update for yt-dlp fixes CVE-2026-26331 and resolves Bug #2441709, while the update for coturn addresses multiple security issues and fixes a bug related to IPv4-mapped IPv6 bypassing denied-peer-ip ACLs. Additionally, updates have been released for valkey to address two security vulnerabilities: CVE-2025-67733 and CVE-2026-21863, as well as several non-security bugs.

Fedora 42 Update: yt-dlp-2026.02.21-1.fc42
Fedora 42 Update: coturn-4.9.0-1.fc42
Fedora 42 Update: valkey-8.0.7-1.fc42
Fedora 42 Update: php-zumba-json-serializer-3.2.4-1.fc42
Fedora 43 Update: coturn-4.9.0-1.fc43
Fedora 43 Update: valkey-8.1.6-1.fc43
Fedora 43 Update: php-zumba-json-serializer-3.2.4-1.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released several updates for various packages, including Erlang and Python Pillow, which address security vulnerabilities. The Erlang update fixes a vulnerability in the tftp_file modules that can lead to information disclosure via relative path traversal (CVE-2026-21620). The Python Pillow update addresses an out-of-bounds write vulnerability (CVE-2026-25990) that could allow attackers to execute malicious code.

Fedora 42 Update: erlang-26.2.5.17-1.fc42
Fedora 42 Update: python-pillow-11.1.0-3.fc42
Fedora 43 Update: erlang-26.2.5.17-1.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released several security updates to address vulnerabilities in various packages, including Chromium Embedded Framework (CEF), NextCloud, pgAdmin4, Python 3.12, and Django. The updates aim to fix issues such as heap buffer overflows, type confusion, use-after-free errors, and SQL injection vulnerabilities.

Fedora 42 Update: cef-145.0.25^chromium145.0.7632.75-4.fc42
Fedora 42 Update: nextcloud-32.0.6-1.fc42
Fedora 42 Update: pgadmin4-9.12-2.fc42
Fedora 43 Update: python3.12-3.12.12-4.fc43
Fedora 43 Update: nextcloud-32.0.6-1.fc43
Fedora 43 Update: pgadmin4-9.12-2.fc43
Fedora 43 Update: cef-145.0.25^chromium145.0.7632.75-4.fc43
Fedora 42 Update: python-django4.2-4.2.28-1.fc42

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora 43 has received two updates: chromium-145.0.7632.116-1.fc43 and gimp-3.0.8-5.fc43, both addressing security issues. The chromium update fixes three vulnerabilities (CVE-2026-3061, CVE-2026-3062, and CVE-2026-3063) that affect the browser's media, tint, and DevTools functionality. The gimp update resolves a vulnerability in the PSD file loader (CVE-2026-2239), which could cause a denial of service attack.

Fedora 43 Update: chromium-145.0.7632.116-1.fc43
Fedora 43 Update: gimp-3.0.8-5.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Linux 44 Beta Candidate 1.2 has been released with new versions of GNOME, KDE Plasma, and the Linux kernel series. This beta candidate is crucial for ironing out issues that may arise when these components converge, such as a recent patch in GNOME 50 that can cause a black screen on older GPUs. To help test the release, users can access various resources including pre-built ISOs, test cases, and support channels like the Fedora Quality chat channel and quality tag on Discourse. The community is encouraged to submit results and flag any blockers before the final freeze in two weeks, as this will help ensure the quality of the release.

Fedora Linux 9307 Published by Philipp Esselbach 0

Several security updates have been released for Fedora 42 and Fedora 43. The updates include fixes for vulnerabilities in Python, including potential SQL injections and denial-of-service attacks, as well as updates to Django, a high-level Python Web framework. The updates also include security fixes for CVE-2025-15366, CVE-2025-15367, CVE-2026-0865, and CVE-2026-1299, among others.

Fedora 42 Update: python-django5-5.2.11-1.fc42
Fedora 42 Update: python3.13-3.13.12-1.fc42
Fedora 42 Update: python3-docs-3.13.12-1.fc42
Fedora 42 Update: python3.9-3.9.25-6.fc42
Fedora 43 Update: python-django5-5.2.11-1.fc43
Fedora 43 Update: python3.9-3.9.25-6.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Remi Collet has made available PHP 8.5.4RC1 and 8.4.19RC1 for developers to test language changes before they hit production, through the Remi Test Repositories on Fedora and RHEL. To use these releases, you need to enable the Remi repositories first by running a few commands in your terminal - this involves installing the dnf-plugins-core package and enabling the remi-modular-test and remi-test repos. If your system already has PHP installed, you can install the RC as an SCL without replacing your default version, and then switch to it using update-alternatives; or if you want to use the new version system-wide, you can swap the module directly with dnf. When you're done testing, reverting is easy - just switch back to a stable version and run an update, and the old packages will replace the RC ones without affecting other system components.

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has issued several security updates for various packages, including nss-3.120.1-1.fc42, firefox-148.0-1.fc42, python3.15-3.15.0~a6-1.fc42, udisks2-2.11.1-1.fc43, libmaxminddb-1.13.1-1.fc43, gh-2.87.0-2.fc43, and freerdp-3.23.0-1.fc43. These updates address vulnerabilities in the packages, including CVE-2025-15366, CVE-2026-0672, CVE-2026-0865, CVE-2026-1299, and others.

Fedora 42 Update: nss-3.120.1-1.fc42
Fedora 42 Update: firefox-148.0-1.fc42
Fedora 42 Update: python3.15-3.15.0~a6-1.fc42
Fedora 43 Update: udisks2-2.11.1-1.fc43
Fedora 43 Update: libmaxminddb-1.13.1-1.fc43
Fedora 43 Update: gh-2.87.0-2.fc43
Fedora 43 Update: python3.15-3.15.0~a6-1.fc43
Fedora 43 Update: freerdp-3.23.0-1.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released several security updates for its Fedora 43 and Fedora 42 versions. The updates include patches for various vulnerabilities, including a buffer overflow in MUNGE (CVE-2026-25506), multiple issues with Python3.14 (CVEs 2025-11468, 2026-0672, etc.), and a netbeans specialKeys stack buffer overflow in vim (CVE-2026-26269).

Fedora 43 Update: firefox-148.0-1.fc43
Fedora 43 Update: opentofu-1.11.5-1.fc43
Fedora 43 Update: 389-ds-base-3.1.4-7.fc43
Fedora 43 Update: vim-9.2.045-1.fc43
Fedora 43 Update: munge-0.5.18-1.fc43
Fedora 43 Update: python3.14-3.14.3-1.fc43
Fedora 43 Update: python3-docs-3.14.3-1.fc43
Fedora 42 Update: vim-9.2.045-1.fc42
Fedora 42 Update: munge-0.5.18-1.fc42
Fedora 42 Update: chromium-145.0.7632.109-1.fc42

Fedora Linux 9307 Published by Philipp Esselbach 0

The first candidate for Fedora Linux 44 Beta is now live with a fresh GNOME 50 stack alongside Linux kernel 6.19.2. This beta cycle focuses on ironing out surprises that surface when new desktop environments and kernels converge, particularly issues related to the recent patch in GNOME 50. Testers are asked to dive into the full test plan, submit results, and flag any blockers before the final freeze. By doing so, they'll help ensure the quality of Fedora 44's release by identifying potential issues and submitting their findings through the official Summary page.

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora 43 has received two security updates: one for yt-dlp, a command-line program to download videos from online platforms, and another for chromium, an open-source web browser. The yt-dlp update fixes a vulnerability that allowed arbitrary command injection via malicious URLs when using the --netrc-cmd option. The chromium update addresses three vulnerabilities: CVE-2026-2648, a heap buffer overflow in PDFium; CVE-2026-2649, an integer overflow in V8; and CVE-2026-2650, another heap buffer overflow in Media.

Fedora 43 Update: yt-dlp-2026.02.21-1.fc43
Fedora 43 Update: chromium-145.0.7632.109-1.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora 43 has been updated to fix security vulnerabilities, including a Denial of Service (DoS) via crafted input during barcode decoding in MuPDF. The updates include new versions of qpdfview (0.5.0-25.fc43), mupdf (1.27.1-4.fc43), zathura-pdf-mupdf (0.4.4-9.fc43), and python-PyMuPDF (1.27.1-2.fc43).

Fedora 43 Update: qpdfview-0.5.0-25.fc43
Fedora 43 Update: mupdf-1.27.1-4.fc43
Fedora 43 Update: zathura-pdf-mupdf-0.4.4-9.fc43
Fedora 43 Update: python-PyMuPDF-1.27.1-2.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Several security updates have been released for Fedora 42 and 43, addressing issues in packages such as mupdf, rust-ambient-id, uv, python-uv-build, python-pyasn1, and python3.13. The updates include patches for bugs like CVE-2026-25556, CVE-2026-25727, and CVE-2026-23490, which could lead to denial-of-service attacks or memory exhaustion.

Fedora 42 Update: mupdf-1.26.3-5.fc42
Fedora 42 Update: rust-ambient-id-0.0.10-1.fc42
Fedora 42 Update: uv-0.10.2-1.fc42
Fedora 42 Update: python-uv-build-0.10.2-1.fc42
Fedora 42 Update: python-pyasn1-0.6.2-1.fc42
Fedora 43 Update: python3.13-3.13.12-1.fc43
Fedora 43 Update: python-pyasn1-0.6.2-1.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released multiple security updates for various packages, including microcode_ctl, python3.14, roundcubemail, and azure-cli. The updates address vulnerabilities such as use after free in CSS, heap buffer overflow in Codecs, and insufficient policy enforcement in Frames. These updates are recommended to prevent potential Denial of Service attacks, SQL injection, and other security risks. Users can refer to the Fedora Security Advisories for detailed information about each update.

Fedora 42 Update: microcode_ctl-2.1-70.1.fc42
Fedora 42 Update: python3.14-3.14.3-1.fc42
Fedora 42 Update: roundcubemail-1.6.13-1.fc42
Fedora 42 Update: python-azure-core-1.38.0-2.fc42
Fedora 42 Update: azure-cli-2.68.0-2.fc42
Fedora 43 Update: chromium-145.0.7632.75-1.fc43
Fedora 43 Update: microcode_ctl-2.1-71.1.fc43
Fedora 43 Update: python-azure-core-1.38.0-2.fc43
Fedora 43 Update: roundcubemail-1.6.13-1.fc43
Fedora 43 Update: azure-cli-2.81.0-2.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released an update for the fvwm3 package to fix a Denial-of-Service vulnerability (CVE-2025-65637) caused by large single-line payloads. The updated version is 1.1.4-4.fc42 and 1.1.4-4.fc43 for Fedora 42 and 43, respectively. Users are recommended to upgrade their fvwm3 packages using the "dnf" update program with the command su -c 'dnf upgrade --advisory FEDORA-2026-439af2cc95' or su -c 'dnf upgrade --advisory FEDORA-2026-adbfebd04b'.

Fedora 42 Update: fvwm3-1.1.4-4.fc42
Fedora 43 Update: fvwm3-1.1.4-4.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released three security updates to address vulnerabilities in various packages. The first update, for GnuPG 2.4.9, fixes a stack-based buffer overflow that allows arbitrary code execution (CVE-2026-24882). The second update, for rsync 3.4.1, fixes an out-of-bounds array access via negative index (CVE-2025-10158). The third update, for libpng 1.6.55, fixes a heap buffer overflow in png_set_quantize (CVE-2026-25646) and an integer truncation causing a heap buffer over-read in png_image_write_* (CVE-2026-22801).

Fedora 42 Update: gnupg2-2.4.9-2.fc42
Fedora 43 Update: rsync-3.4.1-5.fc43
Fedora 43 Update: libpng-1.6.55-1.fc43

Fedora Linux 9307 Published by Philipp Esselbach 0

Three security updates have been released for Fedora 42: vim-9.1.2146-1.fc42, p11-kit-0.26.2-1.fc42, and gnutls-3.8.11-3.fc42. The updates fix vulnerabilities, including a denial of service attack via crafted ClientHello with invalid PSK binder and excessive resource consumption during certificate verification. Each update can be installed using the "dnf" update program, and more information is available on the Fedora Project's website.

Fedora 42 Update: vim-9.1.2146-1.fc42
Fedora 42 Update: p11-kit-0.26.2-1.fc42
Fedora 42 Update: gnutls-3.8.11-3.fc42