Lector de Feeds
MGASA-2025-0223 - Updated tomcat packages fix vulnerabilities
Publication date: 02 Sep 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-52434 , CVE-2025-52520 , CVE-2025-53506 , CVE-2025-48989 Description APR/Native Connector crash leading to DoS. (CVE-2025-52434) DoS via integer overflow in multipart file upload. (CVE-2025-52520) DoS via excessive h2 streams at connection start. (CVE-2025-53506) H2 DoS - Made You Reset. (CVE-2025-48989) References
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-52434 , CVE-2025-52520 , CVE-2025-53506 , CVE-2025-48989 Description APR/Native Connector crash leading to DoS. (CVE-2025-52434) DoS via integer overflow in multipart file upload. (CVE-2025-52520) DoS via excessive h2 streams at connection start. (CVE-2025-53506) H2 DoS - Made You Reset. (CVE-2025-48989) References
- https://bugs.mageia.org/show_bug.cgi?id=34465
- https://www.openwall.com/lists/oss-security/2025/07/10/11
- https://www.openwall.com/lists/oss-security/2025/07/10/12
- https://www.openwall.com/lists/oss-security/2025/07/10/13
- https://www.openwall.com/lists/oss-security/2025/08/13/2
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-52434
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-52520
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-53506
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-48989
- tomcat-9.0.108-1.mga9
Categorías: Actualizaciones de Seguridad
MGAA-2025-0080 - Updated slurm packages fix bug
Publication date: 02 Sep 2025
Type: bugfix
Affected Mageia releases : 9
Description This update fixes a packaging issue allowing for conflicting libraries to be installed. References SRPMS 9/core
Type: bugfix
Affected Mageia releases : 9
Description This update fixes a packaging issue allowing for conflicting libraries to be installed. References SRPMS 9/core
- slurm-23.11.11-1.2.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2025-0222 - Updated ceph packages fix vulnerability
Publication date: 01 Sep 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-52555 Description Security regression (CVE-2025-52555) that would have allowed an user to read, write and execute to any directory owned by root as long as they chmod 777 it. References
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-52555 Description Security regression (CVE-2025-52555) that would have allowed an user to read, write and execute to any directory owned by root as long as they chmod 777 it. References
- https://bugs.mageia.org/show_bug.cgi?id=34400
- https://www.openwall.com/lists/oss-security/2025/06/26/1
- https://github.com/ceph/ceph/commit/64f0d786a078a79843c1c1da9cae5e2e603371af
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-52555
- ceph-18.2.7-2.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2025-0221 - Updated golang packages fix vulnerabilities
Publication date: 01 Sep 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-47906 , CVE-2025-47907 Description LookPath may return unexpected paths, CVE-2025-47906. incorrect results returned from Rows.Scan, CVE-2025-47907. These packages fix the issues for the compiler only; applications using the functions still need to be rebuilt. References
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-47906 , CVE-2025-47907 Description LookPath may return unexpected paths, CVE-2025-47906. incorrect results returned from Rows.Scan, CVE-2025-47907. These packages fix the issues for the compiler only; applications using the functions still need to be rebuilt. References
- https://bugs.mageia.org/show_bug.cgi?id=34584
- https://www.openwall.com/lists/oss-security/2025/08/06/1
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47906
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47907
- golang-1.24.6-1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2025-0220 - Updated glibc packages fix vulnerability
Publication date: 01 Sep 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-8058 Description Double-free after allocation failure in regcomp. (CVE-2025-8058) References
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-8058 Description Double-free after allocation failure in regcomp. (CVE-2025-8058) References
- https://bugs.mageia.org/show_bug.cgi?id=34580
- https://www.openwall.com/lists/oss-security/2025/07/23/1
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-8058
- glibc-2.36-57.mga9
Categorías: Actualizaciones de Seguridad
MGAA-2025-0079 - Updated rocksdb packages fix bug
Publication date: 01 Sep 2025
Type: bugfix
Affected Mageia releases : 9
Description Thia update adds support to LZ4 and other compression formats. References SRPMS 9/core
Type: bugfix
Affected Mageia releases : 9
Description Thia update adds support to LZ4 and other compression formats. References SRPMS 9/core
- rocksdb-7.7.8-1.2.mga9
Categorías: Actualizaciones de Seguridad




