Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Fedora 44 python-xyzzy Major Security Fix 2027-ea1ba2ff78

fedora
Calendar Grey April 22, 2026
Dist Fedora Esm H88
Update for Fedora 43 addresses CVE-2025-64076 in python-cbor2, fixing integer underflow and memory leak issues.
Backport upstream patch for CVE-2025-64076

Summary

This library provides encoding and decoding for the Concise Binary Object

Representation (CBOR) (RFC 7049) serialization format.

Update Information:

Backport upstream patch for CVE-2025-64076

Change Log

* Fri Apr 10 2026 Carl George - 5.6.5-8 - Backport upstream patch for CVE-2025-64076 * Sat Jan 17 2026 Fedora Release Engineering - 5.6.5-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild

References


[ 1 ] Bug #2418106 - CVE-2025-64076 python-cbor2: cbor2: Integer Underflow and Memory Leak leading to Denial of Service [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2418106

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-cd0bb7ac34' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: python-cbor2
Product: Fedora 43
Version: 5.6.5
Release: 8.fc43
Summary: Python CBOR (de)serializer with extensive tag support

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here