5.15.2. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-52b9116b3d 2026-04-24 00:53:58.937467+00:00 -------------------------------------------------------------------------------- Name : minetest Product : Fedora 43 Version : 5.15.2 Release : 1.fc43 URL : https://luanti.org Summary : Multiplayer infinite-world block sandbox with survival mode Description : Game of mining, crafting and building in the infinite world of cubic blocks with optional hostile creatures, features both single and the network multiplayer mode, mods. Public multiplayer servers are available. -------------------------------------------------------------------------------- Update Information: 5.15.2 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 16 2026 Gwyn Ciesla - 5.15.2-1 - 5.15.2 * Sun Mar 22 2026 Bjrn Esser - 5.15.1-2 - Rebuild (jsoncpp) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2458512 - minetest-5.15.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2458512 [ 2 ] Bug #2458908 - CVE-2026-40960 minetest: Luanti: Unauthorized access to insecure environment via crafted module [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2458908 [ 3 ] Bug #2458909 - CVE-2026-40959 minetest: Luanti: Lua sandbox escape via crafted mod [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2458909 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-52b9116b3d' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Minetest 5.15.2 on Fedora 43 resolves critical security issues including Lua sandbox escapes.. Fedora 43, Minetest, security fix, application update, cyber threat. . Severity: Critical. LinuxSecurity.com Team
- Upstream 2.8.21 - Fix Lua sandbox escape and arbitrary code execution (RHBZ #1228331). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-9498 2015-06-05 16:29:11 -------------------------------------------------------------------------------- Name : redis Product : Fedora 22 Version : 2.8.21 Release : 1.fc22 URL : https://redis.io/ Summary : A persistent key-value database Description : Redis is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Redis works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Redis also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Redis behave like a cache. You can use Redis from most programming languages also. -------------------------------------------------------------------------------- Update Information: - Upstream 2.8.21 - Fix Lua sandbox escape and arbitrary code execution (RHBZ #1228331) -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 4 2015 Haïkel Guémar - 2.8.21-1 - Upstream 2.8.21 - Fix Lua sandbox escape and arbitrary code execution (RHBZ #1228331) * Thu Mar 26 2015 Haïkel Guémar - 2.8.19-2 - Fix redis-shutdown on multiple NIC setup (RHBZ#1201237) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1228327 - CVE-2015-4335 redis: Lua sandbox escape and arbitrary code execution https://bugzilla.redhat.com/show_bug.cgi?id=1228327 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update redis' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.