Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Fedora 44 PyPy Important JIT Security Fix 2026-fdc024ddc3

fedora
Calendar Grey April 25, 2026
Dist Fedora Esm H88
Resolve JIT compilation and security vulnerabilities in PyPy 7.3.21 on Fedora 44 to enhance performance and strengthen system integrity
JIT translation fix for bootstraping, require openssl 3 and fix CVE-2026-25645 and CVE-2025-8869

Summary

PyPy's implementation of Python, featuring a Just-In-Time compiler on some CPU

architectures, and various optimized implementations of the standard types

(strings, dictionaries, etc)

This build of PyPy has JIT-compilation enabled.

Update Information:

JIT translation fix for bootstraping, require openssl 3 and fix CVE-2026-25645 and CVE-2025-8869

Change Log

* Tue Apr 14 2026 Charalampos Stratakis - 7.3.21-7 - Security fix for CVE-2026-25645 in the bundled requests in the bundled pip wheel - Fixes: rhbz#2452324 * Tue Apr 14 2026 Charalampos Stratakis - 7.3.21-6 - Security fix for CVE-2025-8869 in the bundled pip wheel - Fixes: rhbz#2397929 * Tue Apr 14 2026 Charalampos Stratakis - 7.3.21-5 - Fix bootstrapping segfaults

References


[ 1 ] Bug #2397929 - CVE-2025-8869 pypy: pip missing checks on symbolic link extraction [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2397929 [ 2 ] Bug #2452324 - CVE-2026-25645 pypy: Requests: Security bypass due to predictable temporary file creation [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2452324

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-fdc024ddc3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: pypy
Product: Fedora 44
Version: 7.3.21
Release: 8.fc44
Summary: Python implementation with a Just-In-Time compiler

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here