Fedora Security Advisories

rubygems-4.0.20-1.fc44

1 hour 7 minutes ago
FEDORA-2026-2857104379 Packages in this update:
  • rubygems-4.0.20-1.fc44
Update description:

Update rubygems to 4.0.20. Additionally, several security issues were found in resolv gem bundled in rubygems. This update resolves these issues by updating resolv to 0.7.2.

rubygems-4.0.20-1.fc45

1 hour 8 minutes ago
FEDORA-2026-9831a751e2 Packages in this update:
  • rubygems-4.0.20-1.fc45
Update description:

Update rubygems to 4.0.20. Additionally, several security issues were found in resolv gem bundled in rubygems. This update resolves these issues by updating resolv to 0.7.2.

rubygems-4.0.20-1.fc46

1 hour 41 minutes ago
FEDORA-2026-c77b963cc9 Packages in this update:
  • rubygems-4.0.20-1.fc46
Update description:

Automatic update for rubygems-4.0.20-1.fc46.

Changelog * Thu Sep 3 2026 Mamoru TASAKA <mtasaka@fedoraproject.org> - 4.0.20-1 - Update to RubyGems 4.0.20 - Backport ruby upstream patch to update resolv to 0.7.2 - Resolves: CVE-2026-80212 (rhbz#2527309) - Resolves: CVE-2026-80213 (rhbz#2527311)

python-django5-5.2.17-2.fc44

15 hours 37 minutes ago
FEDORA-2026-301e6e2983 Packages in this update:
  • python-django5-5.2.17-2.fc44
Update description:

Update python-django5 to the latest 5.x release (5.2.17)

  • Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups
  • Fixes CVE-2026-15337 [low]: Potential denial-of-service vulnerability in check_for_language()
  • Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections
  • Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin

python-django5-5.2.17-2.fc43

15 hours 37 minutes ago
FEDORA-2026-6b28b4e483 Packages in this update:
  • python-django5-5.2.17-2.fc43
Update description:

Update python-django5 to the latest 5.x release (5.2.17)

  • Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups
  • Fixes CVE-2026-15337 [low]: Potential denial-of-service vulnerability in check_for_language()
  • Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections
  • Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin

python-django5-5.2.17-2.fc45

15 hours 37 minutes ago
FEDORA-2026-950089270f Packages in this update:
  • python-django5-5.2.17-2.fc45
Update description:

Update python-django5 to the latest 5.x release (5.2.17)

  • Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups
  • Fixes CVE-2026-15337 [low]: Potential denial-of-service vulnerability in check_for_language()
  • Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections
  • Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin

tar-1.35-10.fc45

19 hours 15 minutes ago
FEDORA-2026-ee1eb89e7b Packages in this update:
  • tar-1.35-10.fc45
Update description:

Fix CVE-2026-5704, CVE-2026-18508, CVE-2026-18477, and a regression in the fix for CVE-2025-45582.

gnatcoll-26.0.0-5.fc45

19 hours 36 minutes ago
FEDORA-2026-c8b1bb0c97 Packages in this update:
  • gnatcoll-26.0.0-5.fc45
Update description:

Patched the vulnerabilities GNATCOLL-CORE-0162 and GNATCOLL-CORE-0164 in a way that avoids interface changes.

gnatcoll-26.0.0-4.fc44

20 hours 6 minutes ago
FEDORA-2026-11f44e3c2c Packages in this update:
  • gnatcoll-26.0.0-4.fc44
Update description:

Patched the vulnerabilities GNATCOLL-CORE-0162 and GNATCOLL-CORE-0164 in a way that avoids interface changes.

gnatcoll-25.0.0-6.fc43

20 hours 19 minutes ago
FEDORA-2026-d5c7f91202 Packages in this update:
  • gnatcoll-25.0.0-6.fc43
Update description:

Patched the vulnerabilities GNATCOLL-CORE-0162 and GNATCOLL-CORE-0164 in a way that avoids interface changes.

Checked
29 minutes 51 seconds ago