Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Fedora 43 Prometheus 3.10.0 Important Update Advisory 2026-ce1dd0caa0

fedora
Calendar Grey March 7, 2026
Dist Fedora Esm H88
Update to Prometheus 3.10.0 offers monitoring system enhancements for Fedora 43, addressing key issues.
Rename from golang-github-prometheus & update to 3.10.0

Summary

The Prometheus monitoring system and time series database.

Update Information:

Rename from golang-github-prometheus & update to 3.10.0

Change Log

* Thu Feb 26 2026 Mikel Olasagasti Uranga - 3.10.0-1 - Update to 3.10.0 - Closes rhbz#2390501 * Mon Feb 23 2026 Mikel Olasagasti Uranga - 2.55.1-1 - Initial package after renaming from golang-github-prometheus - Closes rhbz#2383787

References


[ 1 ] Bug #2408245 - CVE-2025-58189 golang-github-prometheus: go crypto/tls ALPN negotiation error contains attacker controlled information [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2408245 [ 2 ] Bug #2408712 - CVE-2025-61725 golang-github-prometheus: Excessive CPU consumption in ParseAddress in net/mail [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2408712 [ 3 ] Bug #2409716 - CVE-2025-61723 golang-github-prometheus: Quadratic complexity when parsing some invalid inputs in encoding/pem [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2409716 [ 4 ] Bug #2410669 - CVE-2025-58185 golang-github-prometheus: Parsing DER payload can cause memory exhaustion in encoding/asn1 [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2410669 [ 5 ] Bug #2411565 - CVE-2025-58188 golang-github-prometheus: Panic when validating certificates with DSA public keys in crypto/x509 [fedora-43] https://bugzilla.redha...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-ce1dd0caa0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: prometheus
Product: Fedora 43
Version: 3.10.0
Release: 1.fc43
Summary: Prometheus monitoring system and time series database

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here