This release fixes CVE-2026-2474 (a heap buffer overflow) and handling failed read syscalls.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-eb6b1039eb 2026-03-07 00:17:58.501965+00:00 -------------------------------------------------------------------------------- Name : perl-Crypt-URandom Product : Fedora 44 Version : 0.55 Release : 1.fc44 URL : https://metacpan.org/release/Crypt-URandom Summary : Non-blocking randomness for Perl Description : This Module is intended to provide an interface to the strongest available source of non-blocking randomness on the current platform. -------------------------------------------------------------------------------- Update Information: This release fixes CVE-2026-2474 (a heap buffer overflow) and handling failed read syscalls. -------------------------------------------------------------------------------- ChangeLog: * Mon Feb 23 2026 Petr Pisar - 0.55-1 - 0.55 bump (CVE-2026-2474) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2440306 - CVE-2026-2474 crypt-urandom: Crypt::URandom for Perl is vulnerable to a heap buffer overflow in the XS function crypt_urandom_getrandom() https://bugzilla.redhat.com/show_bug.cgi?id=2440306 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-eb6b1039eb' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.