Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora administrators must apply security updates for versions 42 through 44 that fix critical flaws in chromium, openssh, and several Python libraries. The python-scitokens package receives hardening against SQL injection risks while also fixing path traversal validation issues within the Enforcer scope checks. Updates to python-ujson address buffer overflow problems caused by large indent parameters and memory leaks during integer parsing.

Fedora 42 Update: python-scitokens-1.9.7-1.fc42
Fedora 42 Update: chromium-146.0.7680.80-1.fc42
Fedora 42 Update: python-ujson-5.12.0-1.fc42
Fedora 43 Update: python-scitokens-1.9.7-1.fc43
Fedora 43 Update: python-ujson-5.12.0-1.fc43
Fedora 44 Update: openssh-10.2p1-6.fc44
Fedora 44 Update: python-scitokens-1.9.7-1.fc44
Fedora 44 Update: python-ujson-5.12.0-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

A batch of security advisories was issued for Fedora Linux versions 42, 43, and 44. These updates address significant flaws in packages such as openssh and cpp-httplib that could allow unauthorized access or denial of service events. System administrators must apply these changes using the dnf upgrade program with specific advisory identifiers.

Fedora 42 Update: openssh-9.9p1-13.fc42
Fedora 42 Update: uxplay-1.73.3-1.fc42
Fedora 42 Update: wordpress-6.9.4-1.fc42
Fedora 42 Update: cpp-httplib-0.37.1-2.fc42
Fedora 43 Update: libsoup3-3.6.6-2.fc43
Fedora 43 Update: glib2-2.86.4-2.fc43
Fedora 43 Update: wordpress-6.9.4-1.fc43
Fedora 43 Update: uxplay-1.73.3-1.fc43
Fedora 43 Update: cpp-httplib-0.37.1-2.fc43
Fedora 44 Update: python3.6-3.6.15-54.fc44
Fedora 44 Update: wordpress-6.9.4-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora released several security advisories that address vulnerabilities within the 43 and 44 product lines. Key patches update the .NET SDK runtime environment and OpenSSH daemon to resolve specific denial of service risks associated with uninitialized variables in GSSAPI functions. Other packages received critical attention including Vim text editor builds that fix code execution flaws alongside Chromium browser updates which prevent memory corruption errors.

Fedora 43 Update: dotnet10.0-10.0.104-1.fc43
Fedora 43 Update: openssh-10.0p1-7.fc43
Fedora 43 Update: bpfman-0.5.4-4.fc43
Fedora 44 Update: chromium-146.0.7680.80-1.fc44
Fedora 44 Update: vim-9.2.148-1.fc44
Fedora 44 Update: cpp-httplib-0.37.1-2.fc44
Fedora 44 Update: polkit-127-2.fc44.1

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora users need to install several critical security patches rolling out for versions 42 through 44 of the Linux distribution this week. Among the most affected applications is the vim editor, which received a major update that resolves numerous vulnerabilities including arbitrary code execution risks. Smaller dependencies such as libtasn1 and kiss-fft also have new releases available to patch dangerous integer overflow flaws found in older builds. Installation requires running a simple command in your terminal environment to apply the fixes.

Fedora 42 Update: vim-9.2.148-1.fc42
Fedora 42 Update: kiss-fft-131.2.0-1.fc42
Fedora 43 Update: libtasn1-4.21.0-1.fc43
Fedora 43 Update: kiss-fft-131.2.0-1.fc43
Fedora 44 Update: mac-12.50-1.fc44
Fedora 44 Update: aqualung-2.0-6.fc44
Fedora 44 Update: kiss-fft-131.2.0-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Asahi Remix 43 lands with a heavy backend update swapping to RPM 6.0 and the DNF5 package manager for better speed. Apple Silicon owners gain actual support for Mac Pros, M2 microphone input, and smoother 120Hz refresh rates on compatible screens.

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora recently released security notifications covering three distinct software updates across its version 43 and 44 Linux distributions. A critical patch resolves an out of bounds write vulnerability in Skia affecting the chromium browser package on Fedora 43 specifically. Systemd gains better sanitization while forgejo receives a new release with upstream bug fixes included. Applying these changes safely requires administrators to run the dnf upgrade command using the specific advisory identifiers listed at the end of each notice.

Fedora 43 Update: chromium-146.0.7680.80-1.fc43
Fedora 44 Update: systemd-259.5-1.fc44
Fedora 44 Update: forgejo-14.0.3-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Multiple security advisories were issued for Fedora Linux to patch critical vulnerabilities across versions 42 through 44. Updates include packages like mingw-openexr, yarnpkg, and vim that received critical fixes during this release cycle. Major security bugs were fixed involving heap buffer overflow flaws that could lead to denial of service or arbitrary code execution.

Fedora 42 Update: mingw-openexr-3.3.8-1.fc42
Fedora 42 Update: yarnpkg-1.22.22-17.fc42
Fedora 43 Update: vim-9.2.148-1.fc43
Fedora 43 Update: mingw-openexr-3.3.8-1.fc43
Fedora 44 Update: mingw-openexr-3.4.6-1.fc44
Fedora 44 Update: yarnpkg-1.22.22-17.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora issued security updates that update pgadmin4, QGIS, and Python 3.6 across multiple distribution versions. The advisories highlight critical fixes including a remote code execution risk in QGIS workflows alongside scripting vulnerabilities found within the database administration tool. Python users will also receive a patch for a denial of service issue stemming from quadratic complexity in an XML module function.

Fedora 42 Update: pgadmin4-9.13-1.fc42
Fedora 42 Update: qgis-3.44.8-1.fc42
Fedora 42 Update: python3.6-3.6.15-53.fc42
Fedora 43 Update: python3.6-3.6.15-53.fc43
Fedora 44 Update: pgadmin4-9.13-1.fc44
Fedora 44 Update: qgis-3.44.8-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released several security updates for various packages, including Python 3.12, EasyRPG Player, Taskwarrior, strongSwan, and others. These updates address CVEs such as CVE-2026-1299, CVE-2026-0865, CVE-2025-15366, and CVE-2025-15367 in Python 3.12, as well as CVE-2026-29022 in dr_libs. Other packages have been updated to fix various issues, including a denial of service vulnerability in dnf5 and missing authorization checks in udisks2.

Fedora 43 Update: python3.12-3.12.13-1.fc43
Fedora 43 Update: easyrpg-player-0.8.1.1-4.fc43
Fedora 43 Update: task-3.4.2-3.fc43
Fedora 42 Update: strongswan-6.0.4-2.fc42
Fedora 42 Update: easyrpg-player-0.8.1.1-2.fc42
Fedora 42 Update: python3.12-3.12.13-1.fc42
Fedora 42 Update: libmaxminddb-1.13.1-1.fc42
Fedora 42 Update: dr_libs-0^20241216git660795b-4.fc42
Fedora 44 Update: dnf5-5.4.0.0-2.fc44
Fedora 44 Update: task-3.4.2-3.fc44
Fedora 44 Update: strongswan-6.0.4-2.fc44
Fedora 44 Update: easyrpg-player-0.8.1.1-5.fc44
Fedora 44 Update: python3.12-3.12.13-1.fc44
Fedora 44 Update: udisks2-2.11.1-1.fc44
Fedora 44 Update: libmaxminddb-1.13.1-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora 44 has received security updates for two packages: python-lxml-html-clean and dr_libs. The python-lxml-html-clean update, version 0.4.4-1.fc44, addresses a cross-site scripting (XSS) vulnerability in lxml_html_clean. The dr_libs update, version 0^20260302.fa931f3-2.fc44, fixes various bugs and compatibility issues with the dr_flac, dr_mp3, and dr_wav libraries.

Fedora 44 Update: python-lxml-html-clean-0.4.4-1.fc44
Fedora 44 Update: dr_libs-0^20260302.fa931f3-2.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released security updates for several packages, including perl-Crypt-SysRandom-XS and systemd. The perl-Crypt-SysRandom-XS update addresses a heap-based buffer overflow vulnerability in the XS function random_bytes(), while the systemd update fixes a local user privilege escalation bug. Both updates are available to install using the "dnf" package manager and can be installed by running the command "su -c 'dnf upgrade --advisory [advisory_id]'" at the command line. All Fedora packages, including these updates, are signed with the Fedora Project GPG key, which can be found on the Fedora website.

Fedora 42 Update: perl-Crypt-SysRandom-XS-0.011-1.fc42
Fedora 43 Update: perl-Crypt-SysRandom-XS-0.011-1.fc43
Fedora 44 Update: systemd-259.3-1.fc44

Fedora Linux 9307 Published by Philipp 0

The Fedora Linux 44 Beta has made several key changes, including switching both Budgie and KDE Plasma to run on Wayland by default, eliminating the need for X11. This shift reduces flicker on high-refresh monitors and improves power management. In addition to this major change, the beta introduces various new package updates, such as Go 1.26 and MariaDB 11.8. The release also includes several tweaks to improve user experience and security.

Fedora Linux 9307 Published by Philipp Esselbach 0

Multiple security updates have been released for Fedora systems, addressing vulnerabilities in various packages. The updates include patches for Chromium (CVE-2026-3536, CVE-2026-3545) and other related packages, as well as fixes for mingw-zlib (CVE-2026-22184), perl-Net-CIDR, polkit, matrix-synapse (CVE-2026-24044), and rust-pythonize.

Fedora 42 Update: chromium-145.0.7632.159-1.fc42
Fedora 42 Update: mingw-zlib-1.3.2-1.fc42
Fedora 42 Update: perl-Net-CIDR-0.27-1.fc42
Fedora 43 Update: chromium-145.0.7632.159-1.fc43
Fedora 43 Update: rust-pythonize-0.27.0-1.fc43
Fedora 43 Update: mingw-zlib-1.3.2-1.fc43
Fedora 43 Update: polkit-126-6.fc43.1
Fedora 43 Update: matrix-synapse-1.147.1-1.fc43
Fedora 44 Update: chromium-145.0.7632.159-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora 42 has released updates for two packages: cef and k9s. The cef update includes a bump to version 145.0.28^chromium145.0.7632.159, which fixes several security vulnerabilities, including integer overflows and heap buffer overflows in various Chromium components. The k9s update is a newer version of the Kubernetes CLI tool, with no significant changes noted.

Fedora 42 Update: cef-145.0.28^chromium145.0.7632.159-1.fc42
Fedora 42 Update: k9s-0.50.18-1.fc42

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has issued security updates for the Chromium Embedded Framework on both Fedora 43 and 44, bumping the packages to version 145.0.28 with chromium 145.0.7632.159 and addressing a range of CVEs that include integer overflows in ANGLE, Skia and V8, as well as heap buffer overflows in PDFium, WebCodecs and Media. The cef updates also note changes such as the adoption of C++20 for libcef and link to Bug #2437035 for more details. In addition, Fedora 43 received a patch for Vim 9.2.112 that fixes multiple CVEs (CVE‑2026‑28417 through CVE‑2026‑28422) involving command injection, buffer overflows and information disclosure in plugins and terminal handling, and users can apply these advisories with the dnf command dnf upgrade --advisory; all packages are signed with the Fedora Project GPG key.

Fedora 43 Update: cef-145.0.28^chromium145.0.7632.159-1.fc43
Fedora 43 Update: vim-9.2.112-2.fc43
Fedora 44 Update: cef-145.0.28^chromium145.0.7632.159-1.fc44

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora Linux 9307 Published by Philipp Esselbach 0

Fedora has released several security updates for various packages, including freerdp, libsixel, opensips, and yt-dlp. These updates address multiple vulnerabilities, such as CVE-2026-26965, CVE-2025-61146, and CVE-2026-26331, which affect the stability and security of Fedora systems

Fedora 44 Update: freerdp-3.23.0-1.fc44
Fedora 42 Update: libsixel-1.10.5-5.fc42
Fedora 42 Update: opensips-3.5.9-2.fc42
Fedora 43 Update: libsixel-1.10.5-5.fc43
Fedora 44 Update: yt-dlp-2026.02.21-1.fc44