Alerts This Week
Warning Icon 1 654
Alerts This Week
Warning Icon 1 654

Fedora 43 SingularityCE Important Denial Of Service Fix 2026-5358fb95a0

fedora
Calendar Grey June 18, 2026
Dist Fedora Esm H88
Upgrade to SingularityCE 4.4.2 for enhanced security on Fedora. This advisory fixes multiple security issues.
Upgrade to 4.4.2 upstream version.

Summary

SingularityCE is the Community Edition of Singularity, an open source

container platform designed to be simple, fast, and secure.

Update Information:

Upgrade to 4.4.2 upstream version.

Change Log

* Wed Jun 10 2026 David Trudgian - 4.4.2-1 - Upgrade to 4.4.2 upstream version. - Fix rhbz#2453093 - Fix rhbz#2458933 - Fix rhbz#2455674 - Fix rhbz#2456379 - Fix CVE-2026-47215

References


[ 1 ] Bug #2453093 - CVE-2026-33748 singularity-ce: BuildKit: Unauthorized file access via Git URL fragment subdir components [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2453093 [ 2 ] Bug #2455674 - CVE-2026-34986 singularity-ce: Go JOSE: Denial of Service via crafted JSON Web Encryption (JWE) object [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2455674 [ 3 ] Bug #2456379 - CVE-2026-39395 singularity-ce: Cosign: Incorrect attestation verification due to malformed payloads or mismatched predicate types [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2456379 [ 4 ] Bug #2458933 - CVE-2026-39984 singularity-ce: improper certificate validation in verifier [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2458933

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-5358fb95a0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: singularity-ce
Product: Fedora 43
Version: 4.4.2
Release: 1.fc43
Summary: Application and environment virtualization

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here