Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

Fedora 43 nano Critical Update for CVE-2026-6843 Denial of Service Issue

fedora
Calendar Grey May 7, 2026
Dist Fedora Esm H88
Nano text editor for Fedora 43 updated to fix critical issues including Denial of Service vulnerabilities.
fix CVE-2026-6842 and CVE-29026-6843 Resolves: CVE-2026-6842 Resolves: CVE-2026-6843 Resolves: rhbz#2455127 Resolves: rhbz#2455314

Summary

GNU nano is a small and friendly text editor.

Update Information:

fix CVE-2026-6842 and CVE-29026-6843 Resolves: CVE-2026-6842 Resolves: CVE-2026-6843 Resolves: rhbz#2455127 Resolves: rhbz#2455314

Change Log

* Thu Apr 30 2026 Luk\u0161 Zaoral - 8.5-3 - fix CVE-2026-6842 and CVE-29026-6843

References


[ 1 ] Bug #2455127 - [Security] Format String Vulnerability in nano's statusline() via errormessage Buffer https://bugzilla.redhat.com/show_bug.cgi?id=2455127 [ 2 ] Bug #2460502 - CVE-2026-6842 nano: nano: Local attacker can inject malicious .desktop launcher due to insecure directory permissions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2460502 [ 3 ] Bug #2460503 - CVE-2026-6843 nano: nano: Format string vulnerability leads to Denial of Service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2460503

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-d0a0f1c3d2' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: nano
Product: Fedora 43
Version: 8.5
Release: 3.fc43
Summary: A small text editor

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here