Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 42 Nano Critical Fix for CVE-2026-6842 and CVE-2026-6843

fedora
Calendar Grey May 13, 2026
Dist Fedora Esm H88
Update for Fedora 42 nano resolves critical issues with two CVEs ensuring enhanced security against attacks.
fix CVE-2026-6842 and CVE-29026-6843 Resolves: CVE-2026-6842 Resolves: CVE-2026-6843 Resolves: rhbz#2455127 Resolves: rhbz#2455314

Summary

GNU nano is a small and friendly text editor.

Update Information:

fix CVE-2026-6842 and CVE-29026-6843 Resolves: CVE-2026-6842 Resolves: CVE-2026-6843 Resolves: rhbz#2455127 Resolves: rhbz#2455314

Change Log

* Thu Apr 30 2026 Luk\u0161 Zaoral - 8.3-4 - fix CVE-2026-6842 and CVE-29026-6843

References


[ 1 ] Bug #2455127 - [Security] Format String Vulnerability in nano's statusline() via errormessage Buffer https://bugzilla.redhat.com/show_bug.cgi?id=2455127 [ 2 ] Bug #2460502 - CVE-2026-6842 nano: nano: Local attacker can inject malicious .desktop launcher due to insecure directory permissions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2460502 [ 3 ] Bug #2460503 - CVE-2026-6843 nano: nano: Format string vulnerability leads to Denial of Service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2460503

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-fbeaecb457' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: nano
Product: Fedora 42
Version: 8.3
Release: 4.fc42
Summary: A small text editor

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here