Security fix for CVE-2026-3219 in the bundled pip wheel . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-130f7539d3 2026-05-17 01:26:47.130170+00:00 -------------------------------------------------------------------------------- Name : pypy Product : Fedora 44 Version : 7.3.22 Release : 2.fc44 URL : https://www.pypy.org/ Summary : Python implementation with a Just-In-Time compiler Description : PyPy's implementation of Python, featuring a Just-In-Time compiler on some CPU architectures, and various optimized implementations of the standard types (strings, dictionaries, etc) This build of PyPy has JIT-compilation enabled. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2026-3219 in the bundled pip wheel -------------------------------------------------------------------------------- ChangeLog: * Tue May 5 2026 Charalampos Stratakis - 7.3.22-2 - Security fix for CVE-2026-3219 in the bundled pip wheel - Fixes: rhbz#2461288 * Tue May 5 2026 Charalampos Stratakis - 7.3.22-1 - Update to 7.3.22 - Fixes: rhbz#2463475 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2461288 - CVE-2026-3219 pypy: pip: Incorrect file installation due to improper archive handling [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2461288 [ 2 ] Bug #2463475 - pypy-7.3.22 is available https://bugzilla.redhat.com/show_bug.cgi?id=2463475 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-130f7539d3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed withthe Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.