Frameworks 6.25.0 + KDE Plasma 6.6.4. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-fe3d8d4767 2026-04-16 23:40:54.273526+00:00 -------------------------------------------------------------------------------- Name : kf6-kcoreaddons Product : Fedora 44 Version : 6.25.0 Release : 1.fc44 URL : https://invent.kde.org/frameworks/kcoreaddons Summary : KDE Frameworks 6 Tier 1 addon with various classes on top of QtCore Description : KCoreAddons provides classes built on top of QtCore to perform various tasks such as manipulating mime types, autosaving files, creating backup files, generating random sequences, performing text manipulations such as macro replacement, accessing user information and many more. -------------------------------------------------------------------------------- Update Information: Frameworks 6.25.0 + KDE Plasma 6.6.4 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 9 2026 Steve Cossette - 6.25.0-1 - 6.25.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2455469 - Configuring WifI network via Network pane appears to not work https://bugzilla.redhat.com/show_bug.cgi?id=2455469 [ 2 ] Bug #2457573 - FE: KDE Frameworks 6.25.0 + Plasma 6.6.4 https://bugzilla.redhat.com/show_bug.cgi?id=2457573 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-fe3d8d4767' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
PySide6 6.10.1 update. Pyside6 6.10.1 release. Rebuilt with stb_image patched for two new security bugs.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-0cc929ff17 2025-12-04 00:51:14.440721+00:00 -------------------------------------------------------------------------------- Name : kf6-kcoreaddons Product : Fedora 43 Version : 6.20.0 Release : 2.fc43 URL : https://invent.kde.org/frameworks/kcoreaddons Summary : KDE Frameworks 6 Tier 1 addon with various classes on top of QtCore Description : KCoreAddons provides classes built on top of QtCore to perform various tasks such as manipulating mime types, autosaving files, creating backup files, generating random sequences, performing text manipulations such as macro replacement, accessing user information and many more. -------------------------------------------------------------------------------- Update Information: PySide6 6.10.1 update. Pyside6 6.10.1 release. Rebuilt with stb_image patched for two new security bugs. -------------------------------------------------------------------------------- ChangeLog: * Tue Dec 2 2025 Jan Grulich - 6.20.0-2 - Rebuild (python-pyside6) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2400455 - python-pyside6-6.10.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2400455 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-0cc929ff17' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
The package kcoreaddons before version 5.26.0-2 is vulnerable to insufficient validation. . Arch Linux Security Advisory ASA-201610-4 ======================================== Severity: Medium Date : 2016-10-07 CVE-ID : CVE-2016-7966 Package : kcoreaddons Type : insufficient validation Remote : Yes Link : https://wiki.archlinux.org/title/CVE Summary ====== The package kcoreaddons before version 5.26.0-2 is vulnerable to insufficient validation. Resolution ========= Upgrade to 5.26.0-2. # pacman -Syu "kcoreaddons> =5.26.0-2" The problem has been fixed upstream but no release is available yet. Workaround ========= None. Description ========== Through a malicious URL that contained a quote character it was possible to inject HTML code in KMail's plain text viewer. Due to the parser used on the URL it was not possible to include the equal sign (=) or a space into the injected HTML, which greatly reduces the available HTML functionality. Although it is possible to include an HTML comment indicator to hide content. Impact ===== A remote attacker is able to inject HTML code in KMail's plain text viewer. References ========= https://kde.org/info/security/advisory-20161006-1.txt https://seclists.org/oss-sec/2016/q4/23 https://access.redhat.com/security/cve/CVE-2016-7966 . The Arch Linux Security Advisory ASA-202110-5 pertains to a critical flaw in kcoreaddons, concerning inadequate validation practices.. Arch Linux Security,kcoreaddons,insufficient validation,securities advisory,medium severity. . Severity: Medium. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.