An update that solves one vulnerability can now be installed.. # python311-joserfc-1.7.1-1.1 on GA media Announcement ID: openSUSE-SU-2026:11067-1 Rating: moderate Cross-References: * CVE-2026-48990 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the python311-joserfc-1.7.1-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * python311-joserfc 1.7.1-1.1 * python313-joserfc 1.7.1-1.1 * python314-joserfc 1.7.1-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-48990.html . This update addresses a moderate security issue in the python311-joserfc package on openSUSE Tumbleweed.. openSUSE updates, security issues, python security, security patch, openSUSE vulnerabilities. . Severity: moderate. LinuxSecurity.com Team
An update that solves 5 vulnerabilities can now be installed.. # python311-3.11.15-6.1 on GA media Announcement ID: openSUSE-SU-2026:11068-1 Rating: moderate Cross-References: * CVE-2026-1502 * CVE-2026-3446 * CVE-2026-4786 * CVE-2026-6019 * CVE-2026-6100 CVSS scores: * CVE-2026-1502 ( SUSE ): 4.9 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N * CVE-2026-1502 ( SUSE ): 5.7 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:P/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-3446 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N * CVE-2026-3446 ( SUSE ): 6 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2026-4786 ( SUSE ): 7.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L * CVE-2026-4786 ( SUSE ): 7 CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:A/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-6019 ( SUSE ): 3.8 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N * CVE-2026-6019 ( SUSE ): 2.1 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-6100 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-6100 ( SUSE ): 9.1 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 5 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the python311-3.11.15-6.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * python311 3.11.15-6.1 * python311-32bit 3.11.15-6.1 * python311-curses 3.11.15-6.1 * python311-dbm 3.11.15-6.1 * python311-idle 3.11.15-6.1 * python311-tk 3.11.15-6.1 * python311-x86-64-v3 3.11.15-6.1 ## References: * https://www.suse.com/security/cve/CVE-2026-1502.html * https://www.suse.com/security/cve/CVE-2026-3446.html *https://www.suse.com/security/cve/CVE-2026-4786.html * https://www.suse.com/security/cve/CVE-2026-6019.html * https://www.suse.com/security/cve/CVE-2026-6100.html . An update for openSUSE addresses five vulnerabilities in python311 with a moderate severity rating. Update recommended for security.. openSUSE Tumbleweed, python security issues, python311 vulnerabilities. . Severity: moderate. LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # ansible-core-2.20-2.20.7-1.1 on GA media Announcement ID: openSUSE-SU-2026:11064-1 Rating: moderate Cross-References: * CVE-2026-11332 CVSS scores: * CVE-2026-11332 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the ansible-core-2.20-2.20.7-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * ansible-core-2.20 2.20.7-1.1 * ansible-test-2.20 2.20.7-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-11332.html . An openSUSE update resolves a security issue in ansible-core 2.20.7-1.1 rating moderate, affects your system.. openSUSE Ansibel security update, CVE-2026-11332, ansible-core vulnerability. . Severity: moderate. LinuxSecurity.com Team
Mitigates CVE-2026-11332 (rhbz#2485397). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-f027f57724 2026-06-20 01:06:42.654493+00:00 -------------------------------------------------------------------------------- Name : ansible-core Product : Fedora 43 Version : 2.18.18~rc1 Release : 1.fc43 URL : https://ansible.com Summary : A radically simple IT automation system Description : Ansible is a radically simple model-driven configuration management, multi-node deployment, and remote task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. This is the base part of ansible (the engine). -------------------------------------------------------------------------------- Update Information: Mitigates CVE-2026-11332 (rhbz#2485397) -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 11 2026 Maxwell G - 2.18.18~rc1-1 - Update to 2.18.18~rc1. - Mitigates CVE-2026-11332 (rhbz#2485397) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2485397 - CVE-2026-11332 ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2485397 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-f027f57724' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can befound at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 3.001000, fixes CVE-2026-11527. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-3cce371bdf 2026-06-20 01:06:42.654461+00:00 -------------------------------------------------------------------------------- Name : perl-Config-IniFiles Product : Fedora 43 Version : 3.001000 Release : 1.fc43 URL : https://metacpan.org/release/Config-IniFiles Summary : A module for reading .ini-style configuration files Description : Config::IniFiles provides a way to have readable configuration files outside your Perl script. Configurations can be imported (inherited, stacked,...), sections can be grouped, and settings can be accessed from a tied hash. -------------------------------------------------------------------------------- Update Information: Update to 3.001000, fixes CVE-2026-11527 -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 11 2026 Xavier Bachelot - 3.001000-1 - Update to 3.001000 (RHBZ#2487822) - Fixes CVE-2026-11527 * Sat Jan 17 2026 Fedora Release Engineering - 3.000003-18 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-3cce371bdf' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Add support for half-width fonts. Improve content filter compilation by avoiding file copies. Improve handling of out of disk space conditions when the NetworkProcess tried to write data in caches. Fix painting scrollbars when their width changes.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-1557aaef26 2026-06-20 01:06:42.654447+00:00 -------------------------------------------------------------------------------- Name : webkitgtk Product : Fedora 43 Version : 2.52.4 Release : 1.fc43 URL : https://www.webkitgtk.org/ Summary : GTK web content engine library Description : WebKitGTK is the port of the WebKit web rendering engine to the GTK platform. -------------------------------------------------------------------------------- Update Information: Add support for half-width fonts. Improve content filter compilation by avoiding file copies. Improve handling of out of disk space conditions when the NetworkProcess tried to write data in caches. Fix painting scrollbars when their width changes. Fix playback of certain YouTube videos with low frame rates. Fix webkit://gpu not working in systems where neither libGL.so.1 nor libOpenGL.so.0 are available. Fix several crashes and rendering issues. Security fixes: CVE-2026-28847, CVE-2026-28883, CVE-2026-28901, CVE-2026-28902, CVE-2026-28903, CVE-2026-28904, CVE-2026-28905, CVE-2026-28907, CVE-2026-28942, CVE-2026-28946, CVE-2026-28947, CVE-2026-28953, CVE-2026-28955, CVE-2026-28958, CVE-2026-43658, CVE-2026-43660 -------------------------------------------------------------------------------- ChangeLog: * Wed Jun 3 2026 Michael Catanzaro - 2.52.4-1 - Update to 2.52.4 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-1557aaef26' at the command line. For more information, refer to thednf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Mitigates CVE-2026-11332 (rhbz#2485397). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-7f70f809f0 2026-06-20 00:50:40.883572+00:00 -------------------------------------------------------------------------------- Name : ansible-core Product : Fedora 44 Version : 2.20.7~rc1 Release : 1.fc44 URL : https://ansible.com Summary : A radically simple IT automation system Description : Ansible is a radically simple model-driven configuration management, multi-node deployment, and remote task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. This is the base part of ansible (the engine). -------------------------------------------------------------------------------- Update Information: Mitigates CVE-2026-11332 (rhbz#2485397) -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 11 2026 Maxwell G - 2.20.7~rc1-1 - Update to 2.20.7~rc1. - Mitigates CVE-2026-11332 (rhbz#2485397) * Thu Jun 4 2026 Python Maint - 2.20.6-2 - Rebuilt for Python 3.15 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2485397 - CVE-2026-11332 ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2485397 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-7f70f809f0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPGkey. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 3.001000, fixes CVE-2026-11527. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-1c2676703e 2026-06-20 00:50:40.883538+00:00 -------------------------------------------------------------------------------- Name : perl-Config-IniFiles Product : Fedora 44 Version : 3.001000 Release : 1.fc44 URL : https://metacpan.org/release/Config-IniFiles Summary : A module for reading .ini-style configuration files Description : Config::IniFiles provides a way to have readable configuration files outside your Perl script. Configurations can be imported (inherited, stacked,...), sections can be grouped, and settings can be accessed from a tied hash. -------------------------------------------------------------------------------- Update Information: Update to 3.001000, fixes CVE-2026-11527 -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 11 2026 Xavier Bachelot - 3.001000-1 - Update to 3.001000 (RHBZ#2487822) - Fixes CVE-2026-11527 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-1c2676703e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.