Fedora 44 sssd Severe Use After Free and Path Traversal Vulnerabilities

12.07.2026 03:00 CVE fixes: CVE-2026-12610 CVE-2026-14474 CVE-2026-14476 - rhbz#2494777: CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process - rhbz#2497650: CVE-2026-14476 sssd: sssd: GPO cache path traversal via unsanitized

Fedora 44 python-pillow Denial of Service Vuln 2026-46c4892063

12.07.2026 03:00 Fix CVE-2026-55380, CVE-2026-54060, CVE-2026-54059, CVE-2026-55379, CVE-2026-55798

Fedora 44 JFrog-CLI Important Denial Of Service Issues 2026-a5e27945f7

12.07.2026 03:00 Update to 2.112.0.

Fedora 44 librabbitmq Critical Buffer Overflow Fix 2026-fc2f661416

12.07.2026 03:00 Version 0.17.0 - 2026-07-01 Security Fix size_t overflow in amqp_decode_bytes bounds check leading to out-of-bounds read Fix heap buffer overflow in amqp_frame_to_bytes for oversized body frames (GHSA-

Fedora 44 Composer High Package Validation Path Traversal 2026-22ba02bee3

12.07.2026 03:00 Version 2.10.2 - 2026-07-01 Security: Validate package names Security: Validate package bin paths against path traversal Security: Sanitize URL-embedded usernames/token in verbose output

Fedora 44 OpenImageIO Security Advisory Allocation Size Bug 2026-25954ebccf

12.07.2026 03:00 https://github.com/AcademySoftwareFoundation/OpenImageIO/releases/tag/v3.1.15.0

Fedora 43 perl-HTML-Gumbo Important Memory Disclosure Vuln 2026-a457bf78b4

12.07.2026 03:00 This package provides the Perl module HTML::Gumbo. Versions before 0.19 disclose heap memory via type confusion. Support for the element was added to libgumbo 0.10.0 in 2015, but the walk_tree function in lib/HTML/Gumbo.xs was not updated to support it. The element was treated as a text-node, where strlen over-reads the heap block that the

Fedora Prometheus Important XSS Flaws Update 2026-4179e03375

12.07.2026 03:00 Update to 3.13.0

Fedora 43 OpenSSH Important Fixes for Client-Side DoS CVE-2026-55653

12.07.2026 03:00 CVE-2026-55653: Fix double free in openssh DH-GEX client path during FIPS known- group validation that leads to client-side denial of service CVE-2026-55654: Fix heap out-of-bounds read during GSSAPI indicator cleanup due to missing NULL terminator CVE-2026-55655: Fix MITM of X11 forwarding via abstract UNIX socket pre-binding

Fedora 43 docker-compose Important Security Update 2026-8e7eb40534

12.07.2026 03:00 Update to release v5.3.0

Fedora 43 Composer Important Path Traversal Security Fix 2026-3017b1bec1

12.07.2026 03:00 Version 2.10.2 - 2026-07-01 Security: Validate package names Security: Validate package bin paths against path traversal Security: Sanitize URL-embedded usernames/token in verbose output

Slackware p11-kit Addresses Critical Stack Overflow Issue 2026-191-01

12.07.2026 03:00 New p11-kit packages are available for Slackware 15.0 and -current to fix a security issue.

SUSE Linux 15 SP5 Kernel Important Security Fix 2026-2840-1

12.07.2026 03:00 An update that solves 30 vulnerabilities can now be installed.

SUSE 2026-2850-1 Terraform Providers Important Infinite Loop Fix

12.07.2026 03:00 An update that solves one vulnerability and has one security fix can now be installed.

openSUSE Kernel Important Security Update 2026-2840-1 CVE-2026-31771

12.07.2026 03:00 An update that solves 30 vulnerabilities can now be installed.