Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Fedora 44 pspp Low Priority Fixes for DoS 2026-e153173659 Issues

fedora
Calendar Grey April 25, 2026
Dist Fedora Esm H88
Several low-priority fixes for PSPP in Fedora 44 enhance security and software performance.
Fix several low-priority CVEs Build with new Gnulib

Summary

PSPP is a program for statistical analysis of sampled data. It

interprets commands in the SPSS language and produces tabular

output in ASCII, PostScript, or HTML format.

PSPP development is ongoing. It already supports a large subset

of SPSS's transformation language. Its statistical procedure

support is currently limited, but growing.

Update Information:

Fix several low-priority CVEs Build with new Gnulib

Change Log

* Mon Mar 30 2026 Peter Lemenkov - 2.1.1-5 - Fix FTBFS * Mon Mar 30 2026 Peter Lemenkov - 2.1.1-4 - Fix bunch of low-priority CVEs * Mon Mar 23 2026 Peter Lemenkov - 2.1.1-3 - Fix for a recent gnulib * Tue Mar 10 2026 Peter Lemenkov - 2.1.1-2 - Clarify how to get Smake file

References


[ 1 ] Bug #2364045 - CVE-2025-47229 pspp: denial of service via crafted input data in pspp [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2364045 [ 2 ] Bug #2365598 - CVE-2025-47815 pspp: PSPP: Heap Buffer Overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2365598 [ 3 ] Bug #2365601 - CVE-2025-47814 pspp: PSPP: Heap Buffer Overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2365601 [ 4 ] Bug #2367194 - CVE-2025-48188 pspp: Heap Buffer Over-Read in PSPP rijndaelDecrypt Function [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2367194 [ 5 ] Bug #2367692 - CVE-2025-5001 pspp: GNU PSPP pspp-convert.c calloc integer overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2367692 [ 6 ] Bug #2371375 - CVE-2025-5898 pspp: GNU PSPP pspp-convert.c parse_variables_option out-of-bounds write [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2371375 [ 7 ] Bug #23713...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-e153173659' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
low
Lowest
Low
Medium
High
Critical

Name: pspp
Product: Fedora 44
Version: 2.1.1
Release: 5.fc44
Summary: A program for statistical analysis of sampled data

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here