Fedora Linux 9393 Published by

The latest updates address critical flaws in the buildah and podman container tools by resolving CVE-2026-44517. Network administrators managing remote desktop connections will also benefit from the freerdp upgrade, which fixes six separate security issues across different protocol layers. Additionally, the strongswan package received a necessary patch to block a theoretical remote code execution vulnerability that could compromise virtual private network stability.

Fedora 44 Update: buildah-1.43.2-1.fc44
Fedora 44 Update: podman-5.8.3-1.fc44
Fedora 44 Update: freerdp-3.27.1-1.fc44
Fedora 44 Update: strongswan-6.0.7-1.fc44




[SECURITY] Fedora 44 Update: buildah-1.43.2-1.fc44


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-ceb2f5c5bb
2026-06-22 00:50:54.985290+00:00
--------------------------------------------------------------------------------

Name : buildah
Product : Fedora 44
Version : 1.43.2
Release : 1.fc44
URL : https://buildah.io
Summary : A command line tool used for creating OCI Images
Description :
The buildah package provides a command line tool which can be used to
* create a working container from scratch
or
* create a working container from an image as a starting point
* mount/umount a working container's root file system for manipulation
* save container's root file system layer to create a new image
* delete a working container or an image

--------------------------------------------------------------------------------
Update Information:

Update to buildah 1.43.2 and podman 5.8.3
Security fix for CVE-2026-44517
--------------------------------------------------------------------------------
ChangeLog:

* Mon Jun 8 2026 Packit [hello@packit.dev] - 2:1.43.2-1
- Update to 1.43.2 upstream release
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-ceb2f5c5bb' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new



[SECURITY] Fedora 44 Update: podman-5.8.3-1.fc44


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-ceb2f5c5bb
2026-06-22 00:50:54.985290+00:00
--------------------------------------------------------------------------------

Name : podman
Product : Fedora 44
Version : 5.8.3
Release : 1.fc44
URL : https://podman.io/
Summary : Manage Pods, Containers and Container Images
Description :
podman (Pod Manager) is a fully featured container engine that is a simple
daemonless tool. podman provides a Docker-CLI comparable command line that
eases the transition from other container engines and allows the management of
pods, containers and images. Simply put: alias docker=podman.
Most podman commands can be run as a regular user, without requiring
additional privileges.

podman uses Buildah(1) internally to create container images.
Both tools share image (not container) storage, hence each can use or
manipulate images (but not containers) created by the other.

--------------------------------------------------------------------------------
Update Information:

Update to buildah 1.43.2 and podman 5.8.3
Security fix for CVE-2026-44517
--------------------------------------------------------------------------------
ChangeLog:

* Fri Jun 12 2026 Packit [hello@packit.dev] - 5:5.8.3-1
- Update to 5.8.3 upstream release
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-ceb2f5c5bb' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new



[SECURITY] Fedora 44 Update: freerdp-3.27.1-1.fc44


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-9c6082d92d
2026-06-22 00:50:54.985280+00:00
--------------------------------------------------------------------------------

Name : freerdp
Product : Fedora 44
Version : 3.27.1
Release : 1.fc44
URL : http://www.freerdp.com/
Summary : Free implementation of the Remote Desktop Protocol (RDP)
Description :
The xfreerdp & wlfreerdp Remote Desktop Protocol (RDP) clients from the FreeRDP
project.

xfreerdp & wlfreerdp can connect to RDP servers such as Microsoft Windows
machines, xrdp and VirtualBox.

--------------------------------------------------------------------------------
Update Information:

Update to 3.27.1
It fixes CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194,
CVE-2026-55648 and CVE-2026-55827.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 18 2026 Ondrej Holy [oholy@redhat.com] - 2:3.27.1-1
- Update to 3.27.1 (CVE-2026-55191, CVE-2026-55192, CVE-2026-55193,
CVE-2026-55194, CVE-2026-55648, CVE-2026-55827)
Resolves: rhbz#2488900
* Fri Jun 12 2026 Yaakov Selkowitz [yselkowi@redhat.com] - 2:3.26.0-8
- Rebuilt for openssl 4.0
* Mon Jun 8 2026 Franti??ek Zatloukal [fzatlouk@redhat.com] - 2:3.26.0-7
- Rebuilt for icu 78.3
* Thu Jun 4 2026 Ondrej Holy [oholy@redhat.com] - 2:3.26.0-6
- Enable uriparser support on RHEL
* Tue May 26 2026 Yaakov Selkowitz [yselkowi@redhat.com] - 2:3.26.0-5
- Drop multilib-rpm-config usage on RHEL
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-9c6082d92d' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------



[SECURITY] Fedora 44 Update: strongswan-6.0.7-1.fc44


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-284c049f7f
2026-06-22 00:50:54.985255+00:00
--------------------------------------------------------------------------------

Name : strongswan
Product : Fedora 44
Version : 6.0.7
Release : 1.fc44
URL : https://www.strongswan.org/
Summary : An OpenSource IPsec-based VPN and TNC solution
Description :
The strongSwan IPsec implementation supports both the IKEv1 and IKEv2 key
exchange protocols in conjunction with the native NETKEY IPsec stack of the
Linux kernel.

--------------------------------------------------------------------------------
Update Information:

Addresses CVE-2026-47895 which is a theoretical RCE
--------------------------------------------------------------------------------
ChangeLog:

* Sun Jun 14 2026 Paul Wouters [paul.wouters@aiven.io] - 6.0.7-1
- Update to 6.0.7 for CVE-2026-47895
* Fri Jun 12 2026 Yaakov Selkowitz [yselkowi@redhat.com] - 6.0.6-3
- Rebuilt for openssl 4.0
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-284c049f7f' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new