Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 462
Alerts This Week
Warning Icon 1 462

Mageia 9 nano Security Fix 2026-0121 Local Attack DoS Risks

mageia
Calendar Grey May 7, 2026
Scroller Mageia
Updated nano packages in Mageia resolve security issues with local attacks and denial of service threats.
MGASA-2026-0121 - Updated nano packages fix security vulnerabilities

Summary

Description: Local attacker can inject malicious .desktop launcher due to insecure directory permissions. (CVE-2026-6842) Format string vulnerability leads to denial of service. (CVE-2026-6843)

References

- https://bugs.mageia.org/show_bug.cgi?id=35466

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZLLMINU5CKQDNMS5OT7OKS5V6YQFIJUC/

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6842

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6843

Resolution

SRPMS

- 9/core/nano-7.2-1.2.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 07 May 2026
URL: https://advisories.mageia.org/MGASA-2026-0121.html
Type: security
CVE: CVE-2026-6842, CVE-2026-6843

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.