Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Mageia 9 nano Security Fix 2026-0121 Local Attack DoS Risks

mageia
Calendar Grey May 7, 2026
Dist Mageia Esm H88
Updated nano packages in Mageia resolve security issues with local attacks and denial of service threats.
MGASA-2026-0121 - Updated nano packages fix security vulnerabilities

Summary

Description: Local attacker can inject malicious .desktop launcher due to insecure directory permissions. (CVE-2026-6842) Format string vulnerability leads to denial of service. (CVE-2026-6843)

References

- https://bugs.mageia.org/show_bug.cgi?id=35466

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZLLMINU5CKQDNMS5OT7OKS5V6YQFIJUC/

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6842

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6843

Resolution

SRPMS

- 9/core/nano-7.2-1.2.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 07 May 2026
URL: https://advisories.mageia.org/MGASA-2026-0121.html
Type: security
CVE: CVE-2026-6842, CVE-2026-6843

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here