Mageia Security
MGAA-2026-0079 - Updated purple-telegram-tdlib packages fix bugs
Publication date: 06 Aug 2026
Type: bugfix
Affected Mageia releases : 10 , 9
Description
In telegram groups with topics, the conversations from all the topics end in the Unique chat tab in pidgin and messages from pidgin end in the General topic, making it hard to follow the conversations. If the session for the plugin is closed from the phone client, in the next pidgin start you can't login. This update fixes the reported issues. Please note that the icon for the protocol has changed and is now listed as Unofficial Telegram. References
Type: bugfix
Affected Mageia releases : 10 , 9
Description
In telegram groups with topics, the conversations from all the topics end in the Unique chat tab in pidgin and messages from pidgin end in the General topic, making it hard to follow the conversations. If the session for the plugin is closed from the phone client, in the next pidgin start you can't login. This update fixes the reported issues. Please note that the icon for the protocol has changed and is now listed as Unofficial Telegram. References
- https://bugs.mageia.org/show_bug.cgi?id=36048
- https://github.com/adrighem/tdlib-purple/issues/8
- https://github.com/adrighem/tdlib-purple/issues/19
- https://github.com/adrighem/tdlib-purple/releases/tag/tdlib-purple-v2.0.2
- https://github.com/adrighem/tdlib-purple/releases/tag/tdlib-purple-v2.0.1
- https://github.com/adrighem/tdlib-purple/releases/tag/tdlib-purple-v2.0.0
- https://github.com/adrighem/tdlib-purple/releases/tag/tdlib-purple-v1.2.2
- https://github.com/adrighem/tdlib-purple/releases/tag/tdlib-purple-v1.2.1
- https://github.com/adrighem/tdlib-purple/releases/tag/tdlib-purple-v1.2.0
- purple-telegram-tdlib-2.0.2-1.mga10
- purple-telegram-tdlib-2.0.2-1.mga9
Categorías: Actualizaciones de Seguridad
MGAA-2026-0078 - Updated font-tools packages fix two bugs
Publication date: 06 Aug 2026
Type: bugfix
Affected Mageia releases : 10 , 9
Description
pfm2afm crashed on 64-bit machines and did not accept absolute path names to files. Both these issues have been fixed. References SRPMS 10/core
Type: bugfix
Affected Mageia releases : 10 , 9
Description
pfm2afm crashed on 64-bit machines and did not accept absolute path names to files. Both these issues have been fixed. References SRPMS 10/core
- font-tools-0.1-34.mga10
- font-tools-0.1-34.mga9
Categorías: Actualizaciones de Seguridad
MGAA-2026-0077 - Updated steam, steam-udevrules packages add requires
Publication date: 06 Aug 2026
Type: bugfix
Affected Mageia releases : 10
Description
Steam is updated to 1.0.0.87 and Requires: are added for libmesavulkan-drivers and libvulkan-loader1, needed for some games on Intel and AMD gpus. Note that steam-udevrules is required by steam and will be automatically pulled in by steam. However, it is available as a separate package so it can be used by folks with the libre steamcontroller without having to install all of steam to get it. References SRPMS 10/core
Type: bugfix
Affected Mageia releases : 10
Description
Steam is updated to 1.0.0.87 and Requires: are added for libmesavulkan-drivers and libvulkan-loader1, needed for some games on Intel and AMD gpus. Note that steam-udevrules is required by steam and will be automatically pulled in by steam. However, it is available as a separate package so it can be used by folks with the libre steamcontroller without having to install all of steam to get it. References SRPMS 10/core
- steam-udevrules-1.0.0.87-1.mga10
- steam-1.0.0.87-1.mga10.nonfree
Categorías: Actualizaciones de Seguridad
MGAA-2026-0075 - Updated woeusb-ng packages fix bug
Publication date: 05 Aug 2026
Type: bugfix
Affected Mageia releases : 10
Description
woeusb-ng did not mark the 7zip package as a required dependency. This update fixes the reported issue. References SRPMS 10/core
Type: bugfix
Affected Mageia releases : 10
Description
woeusb-ng did not mark the 7zip package as a required dependency. This update fixes the reported issue. References SRPMS 10/core
- woeusb-ng-0.2.12-4.1.mga10
Categorías: Actualizaciones de Seguridad
MGASA-2026-0323 - Updated tomcat packages fix security vulnerabilities
Publication date: 05 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-50229 , CVE-2026-53404 , CVE-2026-53434 , CVE-2026-55276 , CVE-2026-55955 , CVE-2026-55956 , CVE-2026-55957 Description
The updated packages fix security vulnerabilities: XSS in number guess example. (CVE-2026-50229) Bad ornext processing in RewriteValve. (CVE-2026-53404) Invalid CRL configuration doesn't trigger failure for FFM Connector. (CVE-2026-53434) Logged effective web.xml is incomplete. (CVE-2026-55276) EncryptInterceptor not protected against replay attacks. (CVE-2026-55955) Security constraints for default servlet ignored method. (CVE-2026-55956) Authentication bypass with JNDIRealm and GSSAPI authenticated bind. (CVE-2026-55957) References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-50229 , CVE-2026-53404 , CVE-2026-53434 , CVE-2026-55276 , CVE-2026-55955 , CVE-2026-55956 , CVE-2026-55957 Description
The updated packages fix security vulnerabilities: XSS in number guess example. (CVE-2026-50229) Bad ornext processing in RewriteValve. (CVE-2026-53404) Invalid CRL configuration doesn't trigger failure for FFM Connector. (CVE-2026-53434) Logged effective web.xml is incomplete. (CVE-2026-55276) EncryptInterceptor not protected against replay attacks. (CVE-2026-55955) Security constraints for default servlet ignored method. (CVE-2026-55956) Authentication bypass with JNDIRealm and GSSAPI authenticated bind. (CVE-2026-55957) References
- https://bugs.mageia.org/show_bug.cgi?id=35783
- https://www.openwall.com/lists/oss-security/2026/06/29/20
- https://www.openwall.com/lists/oss-security/2026/06/29/21
- https://www.openwall.com/lists/oss-security/2026/06/29/22
- https://www.openwall.com/lists/oss-security/2026/06/29/23
- https://www.openwall.com/lists/oss-security/2026/06/29/24
- https://www.openwall.com/lists/oss-security/2026/06/29/25
- https://www.openwall.com/lists/oss-security/2026/06/29/26
- https://www.cve.org/CVERecord?id=CVE-2026-50229
- https://www.cve.org/CVERecord?id=CVE-2026-53404
- https://www.cve.org/CVERecord?id=CVE-2026-53434
- https://www.cve.org/CVERecord?id=CVE-2026-55276
- https://www.cve.org/CVERecord?id=CVE-2026-55955
- https://www.cve.org/CVERecord?id=CVE-2026-55956
- https://www.cve.org/CVERecord?id=CVE-2026-55957
- tomcat-9.0.119-1.mga10
- tomcat-9.0.119-1.mga9
Categorías: Actualizaciones de Seguridad
MGAA-2026-0076 - Updated php-fpdf package fixes two issues.
Publication date: 05 Aug 2026
Type: bugfix
Affected Mageia releases : 10
Description
Updating php-fpdf to version 1.9.0 suppresses deprecated warnings in php 8.5. This update also fixes a bug related to the PDF creation date. References SRPMS 10/core
Type: bugfix
Affected Mageia releases : 10
Description
Updating php-fpdf to version 1.9.0 suppresses deprecated warnings in php 8.5. This update also fixes a bug related to the PDF creation date. References SRPMS 10/core
- php-fpdf-1.9.0-1.mga10
Categorías: Actualizaciones de Seguridad
MGAA-2026-0074 - Updated netprofile packages fix a bug
Publication date: 05 Aug 2026
Type: bugfix
Affected Mageia releases : 10 , 9
Description
netprofile sent messages to com.mandriva.user instead of org.mageia.user. This update fixes the issue. References SRPMS 10/core
Type: bugfix
Affected Mageia releases : 10 , 9
Description
netprofile sent messages to com.mandriva.user instead of org.mageia.user. This update fixes the issue. References SRPMS 10/core
- netprofile-0.29.1-1.mga10
- netprofile-0.29.1-1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0322 - Updated php packages fix security vulnerabilities
Publication date: 04 Aug 2026
Type: security
Affected Mageia releases : 9
CVE: CVE-2026-7260 , CVE-2026-17543 Description
This update brings the latest version of php 8.2 and fixes some security vulnerabilities. References
Type: security
Affected Mageia releases : 9
CVE: CVE-2026-7260 , CVE-2026-17543 Description
This update brings the latest version of php 8.2 and fixes some security vulnerabilities. References
- https://bugs.mageia.org/show_bug.cgi?id=36034
- https://www.php.net/ChangeLog-8.php#8.2.33
- https://www.cve.org/CVERecord?id=CVE-2026-7260
- https://www.cve.org/CVERecord?id=CVE-2026-17543
- php-8.2.33-1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0321 - Updated acl attr packages fix security vulnerabilities
Publication date: 04 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-54369 , CVE-2026-54370 , CVE-2026-54371 Description
The updated acl and attr packages fix security issues. References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-54369 , CVE-2026-54370 , CVE-2026-54371 Description
The updated acl and attr packages fix security issues. References
- https://bugs.mageia.org/show_bug.cgi?id=35779
- https://www.openwall.com/lists/oss-security/2026/06/29/1
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3TDUECPBS6YQPFZZ6RNXV3T5EFLLHQZS/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CGDSXLCG4AXTWFBAKM6XYUUYO6LZ7YXY/
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/NOOHLEV27XADU2EMOLPK2E6IY2TZKFKQ/
- https://www.cve.org/CVERecord?id=CVE-2026-54369
- https://www.cve.org/CVERecord?id=CVE-2026-54370
- https://www.cve.org/CVERecord?id=CVE-2026-54371
- acl-2.4.0-3.mga10
- attr-2.6.0-1.mga10
- acl-2.4.0-1.mga9
- attr-2.6.0-1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0320 - Updated perl-Unicode-LineBreak package fixes a security vulnerability
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-8594 Description
The updated package fixes a security vulnerability: Text::LineFold versions through 2019.001 for Perl duplicate the output based on the number of special break characters. (CVE-2026-8594) References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-8594 Description
The updated package fixes a security vulnerability: Text::LineFold versions through 2019.001 for Perl duplicate the output based on the number of special break characters. (CVE-2026-8594) References
- https://bugs.mageia.org/show_bug.cgi?id=35612
- https://www.openwall.com/lists/oss-security/2026/05/30/6
- https://www.cve.org/CVERecord?id=CVE-2026-8594
- perl-Unicode-LineBreak-2019.1.0-13.1.mga10
- perl-Unicode-LineBreak-2019.1.0-9.1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0319 - Updated squid packages fix security vulnerabilities
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-47729 , CVE-2026-50012 Description
The updated packages fix security vulnerabilities: Due to a Improper Validation of Syntactic Correctness of Inputbug, Squid is vulnerable to a Out-of-bounds Read attack against the FTP gateway. (CVE-2026-47729) Due to an Improper Input Validation bug, Squid is vulnerable to a Heap-based Buffer Overflow attack against cache digests. (CVE-2026-50012) References
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-47729 , CVE-2026-50012 Description
The updated packages fix security vulnerabilities: Due to a Improper Validation of Syntactic Correctness of Inputbug, Squid is vulnerable to a Out-of-bounds Read attack against the FTP gateway. (CVE-2026-47729) Due to an Improper Input Validation bug, Squid is vulnerable to a Heap-based Buffer Overflow attack against cache digests. (CVE-2026-50012) References
- https://bugs.mageia.org/show_bug.cgi?id=35686
- https://www.openwall.com/lists/oss-security/2026/06/12/1
- https://ubuntu.com/security/notices/USN-8435-1
- https://lists.debian.org/debian-security-announce/2026/msg00271.html
- https://www.cve.org/CVERecord?id=CVE-2026-47729
- https://www.cve.org/CVERecord?id=CVE-2026-50012
- squid-6.12-3.1.mga10
Categorías: Actualizaciones de Seguridad
MGASA-2026-0318 - Updated perl-GD package fixes a security vulnerability
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-11526 Description
The updated package fixes a security vulnerability: GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle. (CVE-2026-11526) References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-11526 Description
The updated package fixes a security vulnerability: GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle. (CVE-2026-11526) References
- https://bugs.mageia.org/show_bug.cgi?id=35700
- https://www.openwall.com/lists/oss-security/2026/06/14/4
- https://metacpan.org/release/RURBAN/GD-2.86/changes
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/FVXC7OE25PPTJFDV7ZFH2DDNTN5ZOZKK/
- https://lists.debian.org/debian-security-announce/2026/msg00256.html
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WWKANNR4XL34RWTURYNNLPBPFQSJWY4H/
- https://ubuntu.com/security/notices/USN-8484-1
- https://www.cve.org/CVERecord?id=CVE-2026-11526
- perl-GD-2.840.0-1.1.mga10
- perl-GD-2.760.0-3.1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0317 - Updated perl packages fix security vulnerabilities
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-13221 , CVE-2026-57432 , CVE-2026-57433 Description
The updated Mageia 10 perl packages contain security fixes for CVE-2026-13221, CVE-2026-57432 and CVE-2026-57433. The Mageia 9 perl packages were not affected by CVE-2026-13221, they are now updated with fixes for CVE-2026-57432 and CVE-2026-57433. References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-13221 , CVE-2026-57432 , CVE-2026-57433 Description
The updated Mageia 10 perl packages contain security fixes for CVE-2026-13221, CVE-2026-57432 and CVE-2026-57433. The Mageia 9 perl packages were not affected by CVE-2026-13221, they are now updated with fixes for CVE-2026-57432 and CVE-2026-57433. References
- https://bugs.mageia.org/show_bug.cgi?id=35925
- https://www.openwall.com/lists/oss-security/2026/07/13/5
- https://www.openwall.com/lists/oss-security/2026/07/13/6
- https://www.openwall.com/lists/oss-security/2026/07/13/7
- https://www.cve.org/CVERecord?id=CVE-2026-13221
- https://www.cve.org/CVERecord?id=CVE-2026-57432
- https://www.cve.org/CVERecord?id=CVE-2026-57433
- perl-5.42.0-3.mga10
- perl-5.36.0-1.4.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0316 - Updated unbound packages fix security vulnerabilities
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-14586 , CVE-2026-32665 , CVE-2026-40691 , CVE-2026-41637 , CVE-2026-42955 , CVE-2026-44621 , CVE-2026-44687 , CVE-2026-44690 , CVE-2026-46582 , CVE-2026-50045 , CVE-2026-50046 , CVE-2026-50243 , CVE-2026-50248 , CVE-2026-50251 , CVE-2026-50252 , CVE-2026-52863 , CVE-2026-54478 , CVE-2026-55708 , CVE-2026-55717 , CVE-2026-55973 , CVE-2026-55990 , CVE-2026-55991 , CVE-2026-56416 , CVE-2026-56444 Description
Unbound packages updated to version 1.25.2 which incorporates a number of security and bug fixes. References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-14586 , CVE-2026-32665 , CVE-2026-40691 , CVE-2026-41637 , CVE-2026-42955 , CVE-2026-44621 , CVE-2026-44687 , CVE-2026-44690 , CVE-2026-46582 , CVE-2026-50045 , CVE-2026-50046 , CVE-2026-50243 , CVE-2026-50248 , CVE-2026-50251 , CVE-2026-50252 , CVE-2026-52863 , CVE-2026-54478 , CVE-2026-55708 , CVE-2026-55717 , CVE-2026-55973 , CVE-2026-55990 , CVE-2026-55991 , CVE-2026-56416 , CVE-2026-56444 Description
Unbound packages updated to version 1.25.2 which incorporates a number of security and bug fixes. References
- https://bugs.mageia.org/show_bug.cgi?id=35991
- https://community.nlnetlabs.nl/t/unbound-1-25-2-released/3430
- https://www.openwall.com/lists/oss-security/2026/07/22/7
- https://nlnetlabs.nl/projects/unbound/security-advisories/
- https://www.cve.org/CVERecord?id=CVE-2026-14586
- https://www.cve.org/CVERecord?id=CVE-2026-32665
- https://www.cve.org/CVERecord?id=CVE-2026-40691
- https://www.cve.org/CVERecord?id=CVE-2026-41637
- https://www.cve.org/CVERecord?id=CVE-2026-42955
- https://www.cve.org/CVERecord?id=CVE-2026-44621
- https://www.cve.org/CVERecord?id=CVE-2026-44687
- https://www.cve.org/CVERecord?id=CVE-2026-44690
- https://www.cve.org/CVERecord?id=CVE-2026-46582
- https://www.cve.org/CVERecord?id=CVE-2026-50045
- https://www.cve.org/CVERecord?id=CVE-2026-50046
- https://www.cve.org/CVERecord?id=CVE-2026-50243
- https://www.cve.org/CVERecord?id=CVE-2026-50248
- https://www.cve.org/CVERecord?id=CVE-2026-50251
- https://www.cve.org/CVERecord?id=CVE-2026-50252
- https://www.cve.org/CVERecord?id=CVE-2026-52863
- https://www.cve.org/CVERecord?id=CVE-2026-54478
- https://www.cve.org/CVERecord?id=CVE-2026-55708
- https://www.cve.org/CVERecord?id=CVE-2026-55717
- https://www.cve.org/CVERecord?id=CVE-2026-55973
- https://www.cve.org/CVERecord?id=CVE-2026-55990
- https://www.cve.org/CVERecord?id=CVE-2026-55991
- https://www.cve.org/CVERecord?id=CVE-2026-56416
- https://www.cve.org/CVERecord?id=CVE-2026-56444
- unbound-1.25.2-1.mga10
- unbound-1.25.2-1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0315 - Updated libvncserver packages fix security vulnerabilities
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-32853 , CVE-2026-32854 , CVE-2026-44988 , CVE-2026-50538 Description
The updated packages fix security vulnerabilities: Heap Out-of-Bounds Read in HandleUltraZipBPP due to unchecked subrectangle count. (CVE-2026-32853) NULL pointer dereferences in httpd proxy handlers via malformed CONNECT/GET requests. (CVE-2026-32854) LibVNCClient Tight Gradient decoding allows malicious server-triggered heap/stack OOB writes. (CVE-2026-44988) Attacker-controlled heap out-of-bounds write in libvncclient Tight decoder. (CVE-2026-50538) References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-32853 , CVE-2026-32854 , CVE-2026-44988 , CVE-2026-50538 Description
The updated packages fix security vulnerabilities: Heap Out-of-Bounds Read in HandleUltraZipBPP due to unchecked subrectangle count. (CVE-2026-32853) NULL pointer dereferences in httpd proxy handlers via malformed CONNECT/GET requests. (CVE-2026-32854) LibVNCClient Tight Gradient decoding allows malicious server-triggered heap/stack OOB writes. (CVE-2026-44988) Attacker-controlled heap out-of-bounds write in libvncclient Tight decoder. (CVE-2026-50538) References
- https://bugs.mageia.org/show_bug.cgi?id=35628
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/SULCQANWMHMI72ZJZEJWSA2YD3ZSRUKQ/
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-jcc5-8wj4-7c58
- https://ubuntu.com/security/notices/USN-8463-1
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-87q7-v983-qwcj
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-xjp8-4qqv-5x4x
- https://ubuntu.com/security/notices/USN-8494-1
- https://github.com/LibVNC/libvncserver/security/advisories/GHSA-v9pm-47h4-jcq8
- https://www.cve.org/CVERecord?id=CVE-2026-32853
- https://www.cve.org/CVERecord?id=CVE-2026-32854
- https://www.cve.org/CVERecord?id=CVE-2026-44988
- https://www.cve.org/CVERecord?id=CVE-2026-50538
- libvncserver-0.9.15-2.1.mga10
- libvncserver-0.9.14-1.1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0314 - Updated librabbitmq packages fix security vulnerabilities
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2023-35789 , CVE-2026-44235 , CVE-2026-44236 Description
The updated packages fix security vulnerabilities: An issue was discovered in the C AMQP client library (aka rabbitmq-c) through 0.13.0 for RabbitMQ. Credentials can only be entered on the command line (e.g., for amqp-publish or amqp-consume) and are thus visible to local attackers by listing a process and its arguments. (CVE-2023-35789) size_t underflow in AMQP frame length computation leads to out-of-bounds read in rabbitmq-c. (CVE-2026-44235) Heap buffer overflow in AMQP login handshake via undersized connection.tune.frame_max. (CVE-2026-44236) References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2023-35789 , CVE-2026-44235 , CVE-2026-44236 Description
The updated packages fix security vulnerabilities: An issue was discovered in the C AMQP client library (aka rabbitmq-c) through 0.13.0 for RabbitMQ. Credentials can only be entered on the command line (e.g., for amqp-publish or amqp-consume) and are thus visible to local attackers by listing a process and its arguments. (CVE-2023-35789) size_t underflow in AMQP frame length computation leads to out-of-bounds read in rabbitmq-c. (CVE-2026-44235) Heap buffer overflow in AMQP login handshake via undersized connection.tune.frame_max. (CVE-2026-44236) References
- https://bugs.mageia.org/show_bug.cgi?id=35702
- https://lists.debian.org/debian-security-announce/2026/msg00254.html
- https://github.com/alanxz/rabbitmq-c/security/advisories/GHSA-9mmv-r8g3-qp46
- https://github.com/alanxz/rabbitmq-c/security/advisories/GHSA-jh48-qjf5-fx5v
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RVOR7C3KDMOVLKB4FNMSD3YNXP3MG4YD/
- https://ubuntu.com/security/notices/USN-8437-1
- https://www.cve.org/CVERecord?id=CVE-2023-35789
- https://www.cve.org/CVERecord?id=CVE-2026-44235
- https://www.cve.org/CVERecord?id=CVE-2026-44236
- librabbitmq-0.15.0-2.1.mga10
- librabbitmq-0.11.0-1.1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0313 - Updated corosync and libqb packages fix security vulnerabilities
Publication date: 03 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-35091 , CVE-2026-35092 Description
The updated packages fix security vulnerabilities: Denial of service and information disclosure via crafted udp packet. (CVE-2026-35091) Denial of service via integer overflow in join message validation. (CVE-2026-35092) Additionally, libqb solves a missing runtime dependency on qb-blackbox. References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-35091 , CVE-2026-35092 Description
The updated packages fix security vulnerabilities: Denial of service and information disclosure via crafted udp packet. (CVE-2026-35091) Denial of service via integer overflow in join message validation. (CVE-2026-35092) Additionally, libqb solves a missing runtime dependency on qb-blackbox. References
- https://bugs.mageia.org/show_bug.cgi?id=35431
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XTKM7OVSXAWVNF3FJR76YF55O7VHHZJ7/
- https://lists.debian.org/debian-security-announce/2026/msg00172.html
- https://www.cve.org/CVERecord?id=CVE-2026-35091
- https://www.cve.org/CVERecord?id=CVE-2026-35092
- corosync-3.1.10-2.1.mga10
- libqb-2.0.9-1.1.mga10
- corosync-3.1.7-1.3.mga9
- libqb-2.0.8-1.1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0312 - Updated kernel, kmod, bluez, firmware, wireless-regdb and drakx-installer-images packages fix security vulnerabilities
Publication date: 01 Aug 2026
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-52908 , CVE-2026-52909 , CVE-2026-52910 , CVE-2026-52917 , CVE-2026-52924 , CVE-2026-52929 , CVE-2026-52930 , CVE-2026-52935 , CVE-2026-52939 , CVE-2026-52940 , CVE-2026-52942 , CVE-2026-52946 , CVE-2026-52947 , CVE-2026-52948 , CVE-2026-53131 , CVE-2026-53132 , CVE-2026-53133 , CVE-2026-53134 , CVE-2026-53135 , CVE-2026-53136 , CVE-2026-53137 , CVE-2026-53138 , CVE-2026-53139 , CVE-2026-53140 , CVE-2026-53141 , CVE-2026-53142 , CVE-2026-53143 , CVE-2026-53144 , CVE-2026-53145 , CVE-2026-53146 , CVE-2026-53147 , CVE-2026-53148 , CVE-2026-53149 , CVE-2026-53150 , CVE-2026-53151 , CVE-2026-53152 , CVE-2026-53153 , CVE-2026-53154 , CVE-2026-53156 , CVE-2026-53157 , CVE-2026-53158 , CVE-2026-53159 , CVE-2026-53160 , CVE-2026-53161 , CVE-2026-53162 , CVE-2026-53163 , CVE-2026-53164 , CVE-2026-53166 , CVE-2026-53167 , CVE-2026-53168 , CVE-2026-53175 , CVE-2026-53176 , CVE-2026-53177 , CVE-2026-53179 , CVE-2026-53180 , CVE-2026-53181 , CVE-2026-53182 , CVE-2026-53183 , CVE-2026-53184 , CVE-2026-53185 , CVE-2026-53186 , CVE-2026-53187 , CVE-2026-53188 , CVE-2026-53189 , CVE-2026-53190 , CVE-2026-53191 , CVE-2026-53192 , CVE-2026-53193 , CVE-2026-53194 , CVE-2026-53195 , CVE-2026-53196 , CVE-2026-53197 , CVE-2026-53198 , CVE-2026-53199 , CVE-2026-53202 , CVE-2026-53203 , CVE-2026-53205 , CVE-2026-53207 , CVE-2026-53208 , CVE-2026-53209 , CVE-2026-53210 , CVE-2026-53211 , CVE-2026-53212 , CVE-2026-53213 , CVE-2026-53214 , CVE-2026-53215 , CVE-2026-53216 , CVE-2026-53217 , CVE-2026-53218 , CVE-2026-53219 , CVE-2026-53220 , CVE-2026-53221 , CVE-2026-53223 , CVE-2026-53224 , CVE-2026-53225 , CVE-2026-53226 , CVE-2026-53227 , CVE-2026-53228 , CVE-2026-53229 , CVE-2026-53230 , CVE-2026-53233 , CVE-2026-53234 , CVE-2026-53235 , CVE-2026-53236 , CVE-2026-53237 , CVE-2026-53238 , CVE-2026-53239 , CVE-2026-53240 , CVE-2026-53241 , CVE-2026-53242 , CVE-2026-53245 , CVE-2026-53246 , CVE-2026-53247 , CVE-2026-53248 , CVE-2026-53249 , CVE-2026-53250 , CVE-2026-53251 , CVE-2026-53252 , CVE-2026-53253 , CVE-2026-53254 , CVE-2026-53255 , CVE-2026-53256 , CVE-2026-53258 , CVE-2026-53259 , CVE-2026-53261 , CVE-2026-53262 , CVE-2026-53263 , CVE-2026-53264 , CVE-2026-53265 , CVE-2026-53266 , CVE-2026-53267 , CVE-2026-53268 , CVE-2026-53269 , CVE-2026-53270 , CVE-2026-53271 , CVE-2026-53272 , CVE-2026-53273 , CVE-2026-53274 , CVE-2026-53275 , CVE-2026-53277 , CVE-2026-53325 , CVE-2026-53327 , CVE-2026-53328 , CVE-2026-53329 , CVE-2026-53330 , CVE-2026-53331 , CVE-2026-53332 , CVE-2026-53333 , CVE-2026-53334 , CVE-2026-53335 , CVE-2026-53336 , CVE-2026-53337 , CVE-2026-53338 , CVE-2026-53339 , CVE-2026-53340 , CVE-2026-53341 , CVE-2026-53342 , CVE-2026-53343 , CVE-2026-53345 , CVE-2026-53346 , CVE-2026-53347 , CVE-2026-53349 , CVE-2026-53350 , CVE-2026-53352 , CVE-2026-53353 , CVE-2026-53354 , CVE-2026-53355 , CVE-2026-53356 , CVE-2026-53359 , CVE-2026-53361 , CVE-2026-53362 , CVE-2026-53363 , CVE-2026-53366 , CVE-2026-53381 , CVE-2026-53382 , CVE-2026-53383 , CVE-2026-53384 , CVE-2026-53385 , CVE-2026-53386 , CVE-2026-53387 , CVE-2026-53388 , CVE-2026-53389 , CVE-2026-53390 , CVE-2026-53391 , CVE-2026-53392 , CVE-2026-53393 , CVE-2026-53394 , CVE-2026-53397 , CVE-2026-53398 , CVE-2026-53399 , CVE-2026-53400 , CVE-2026-53402 , CVE-2026-53403 , CVE-2026-63794 , CVE-2026-63795 , CVE-2026-63796 , CVE-2026-63797 , CVE-2026-63798 , CVE-2026-63800 , CVE-2026-63801 , CVE-2026-63802 , CVE-2026-63803 , CVE-2026-63804 , CVE-2026-63805 , CVE-2026-63806 , CVE-2026-63807 , CVE-2026-63808 , CVE-2026-63809 , CVE-2026-63810 , CVE-2026-63812 , CVE-2026-63814 , CVE-2026-63815 , CVE-2026-63816 , CVE-2026-63817 , CVE-2026-63818 , CVE-2026-63819 , CVE-2026-63821 , CVE-2026-63822 , CVE-2026-63823 , CVE-2026-63824 , CVE-2026-63825 , CVE-2026-63826 , CVE-2026-63827 , CVE-2026-63828 , CVE-2026-63829 , CVE-2026-63830 , CVE-2026-63831 , CVE-2026-63832 , CVE-2026-63833 , CVE-2026-63834 , CVE-2026-63835 , CVE-2026-63836 , CVE-2026-63867 , CVE-2026-63868 , CVE-2026-63869 , CVE-2026-63870 , CVE-2026-63871 , CVE-2026-63873 , CVE-2026-63874 , CVE-2026-64187 , CVE-2026-64188 , CVE-2026-64189 , CVE-2026-64191 , CVE-2026-64205 , CVE-2026-64206 , CVE-2026-64207 Description
Upstream kernel version 6.18.39 fixes bugs and vulnerabilities. The kmod, bluez, wireless-regdb, firmware and drakx-installer-images packages have been updated to work with this new kernel. References
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-52908 , CVE-2026-52909 , CVE-2026-52910 , CVE-2026-52917 , CVE-2026-52924 , CVE-2026-52929 , CVE-2026-52930 , CVE-2026-52935 , CVE-2026-52939 , CVE-2026-52940 , CVE-2026-52942 , CVE-2026-52946 , CVE-2026-52947 , CVE-2026-52948 , CVE-2026-53131 , CVE-2026-53132 , CVE-2026-53133 , CVE-2026-53134 , CVE-2026-53135 , CVE-2026-53136 , CVE-2026-53137 , CVE-2026-53138 , CVE-2026-53139 , CVE-2026-53140 , CVE-2026-53141 , CVE-2026-53142 , CVE-2026-53143 , CVE-2026-53144 , CVE-2026-53145 , CVE-2026-53146 , CVE-2026-53147 , CVE-2026-53148 , CVE-2026-53149 , CVE-2026-53150 , CVE-2026-53151 , CVE-2026-53152 , CVE-2026-53153 , CVE-2026-53154 , CVE-2026-53156 , CVE-2026-53157 , CVE-2026-53158 , CVE-2026-53159 , CVE-2026-53160 , CVE-2026-53161 , CVE-2026-53162 , CVE-2026-53163 , CVE-2026-53164 , CVE-2026-53166 , CVE-2026-53167 , CVE-2026-53168 , CVE-2026-53175 , CVE-2026-53176 , CVE-2026-53177 , CVE-2026-53179 , CVE-2026-53180 , CVE-2026-53181 , CVE-2026-53182 , CVE-2026-53183 , CVE-2026-53184 , CVE-2026-53185 , CVE-2026-53186 , CVE-2026-53187 , CVE-2026-53188 , CVE-2026-53189 , CVE-2026-53190 , CVE-2026-53191 , CVE-2026-53192 , CVE-2026-53193 , CVE-2026-53194 , CVE-2026-53195 , CVE-2026-53196 , CVE-2026-53197 , CVE-2026-53198 , CVE-2026-53199 , CVE-2026-53202 , CVE-2026-53203 , CVE-2026-53205 , CVE-2026-53207 , CVE-2026-53208 , CVE-2026-53209 , CVE-2026-53210 , CVE-2026-53211 , CVE-2026-53212 , CVE-2026-53213 , CVE-2026-53214 , CVE-2026-53215 , CVE-2026-53216 , CVE-2026-53217 , CVE-2026-53218 , CVE-2026-53219 , CVE-2026-53220 , CVE-2026-53221 , CVE-2026-53223 , CVE-2026-53224 , CVE-2026-53225 , CVE-2026-53226 , CVE-2026-53227 , CVE-2026-53228 , CVE-2026-53229 , CVE-2026-53230 , CVE-2026-53233 , CVE-2026-53234 , CVE-2026-53235 , CVE-2026-53236 , CVE-2026-53237 , CVE-2026-53238 , CVE-2026-53239 , CVE-2026-53240 , CVE-2026-53241 , CVE-2026-53242 , CVE-2026-53245 , CVE-2026-53246 , CVE-2026-53247 , CVE-2026-53248 , CVE-2026-53249 , CVE-2026-53250 , CVE-2026-53251 , CVE-2026-53252 , CVE-2026-53253 , CVE-2026-53254 , CVE-2026-53255 , CVE-2026-53256 , CVE-2026-53258 , CVE-2026-53259 , CVE-2026-53261 , CVE-2026-53262 , CVE-2026-53263 , CVE-2026-53264 , CVE-2026-53265 , CVE-2026-53266 , CVE-2026-53267 , CVE-2026-53268 , CVE-2026-53269 , CVE-2026-53270 , CVE-2026-53271 , CVE-2026-53272 , CVE-2026-53273 , CVE-2026-53274 , CVE-2026-53275 , CVE-2026-53277 , CVE-2026-53325 , CVE-2026-53327 , CVE-2026-53328 , CVE-2026-53329 , CVE-2026-53330 , CVE-2026-53331 , CVE-2026-53332 , CVE-2026-53333 , CVE-2026-53334 , CVE-2026-53335 , CVE-2026-53336 , CVE-2026-53337 , CVE-2026-53338 , CVE-2026-53339 , CVE-2026-53340 , CVE-2026-53341 , CVE-2026-53342 , CVE-2026-53343 , CVE-2026-53345 , CVE-2026-53346 , CVE-2026-53347 , CVE-2026-53349 , CVE-2026-53350 , CVE-2026-53352 , CVE-2026-53353 , CVE-2026-53354 , CVE-2026-53355 , CVE-2026-53356 , CVE-2026-53359 , CVE-2026-53361 , CVE-2026-53362 , CVE-2026-53363 , CVE-2026-53366 , CVE-2026-53381 , CVE-2026-53382 , CVE-2026-53383 , CVE-2026-53384 , CVE-2026-53385 , CVE-2026-53386 , CVE-2026-53387 , CVE-2026-53388 , CVE-2026-53389 , CVE-2026-53390 , CVE-2026-53391 , CVE-2026-53392 , CVE-2026-53393 , CVE-2026-53394 , CVE-2026-53397 , CVE-2026-53398 , CVE-2026-53399 , CVE-2026-53400 , CVE-2026-53402 , CVE-2026-53403 , CVE-2026-63794 , CVE-2026-63795 , CVE-2026-63796 , CVE-2026-63797 , CVE-2026-63798 , CVE-2026-63800 , CVE-2026-63801 , CVE-2026-63802 , CVE-2026-63803 , CVE-2026-63804 , CVE-2026-63805 , CVE-2026-63806 , CVE-2026-63807 , CVE-2026-63808 , CVE-2026-63809 , CVE-2026-63810 , CVE-2026-63812 , CVE-2026-63814 , CVE-2026-63815 , CVE-2026-63816 , CVE-2026-63817 , CVE-2026-63818 , CVE-2026-63819 , CVE-2026-63821 , CVE-2026-63822 , CVE-2026-63823 , CVE-2026-63824 , CVE-2026-63825 , CVE-2026-63826 , CVE-2026-63827 , CVE-2026-63828 , CVE-2026-63829 , CVE-2026-63830 , CVE-2026-63831 , CVE-2026-63832 , CVE-2026-63833 , CVE-2026-63834 , CVE-2026-63835 , CVE-2026-63836 , CVE-2026-63867 , CVE-2026-63868 , CVE-2026-63869 , CVE-2026-63870 , CVE-2026-63871 , CVE-2026-63873 , CVE-2026-63874 , CVE-2026-64187 , CVE-2026-64188 , CVE-2026-64189 , CVE-2026-64191 , CVE-2026-64205 , CVE-2026-64206 , CVE-2026-64207 Description
Upstream kernel version 6.18.39 fixes bugs and vulnerabilities. The kmod, bluez, wireless-regdb, firmware and drakx-installer-images packages have been updated to work with this new kernel. References
- https://bugs.mageia.org/show_bug.cgi?id=35976
- https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.18.36
- https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.18.37
- https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.18.38
- https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.18.39
- https://www.cve.org/CVERecord?id=CVE-2026-52908
- https://www.cve.org/CVERecord?id=CVE-2026-52909
- https://www.cve.org/CVERecord?id=CVE-2026-52910
- https://www.cve.org/CVERecord?id=CVE-2026-52917
- https://www.cve.org/CVERecord?id=CVE-2026-52924
- https://www.cve.org/CVERecord?id=CVE-2026-52929
- https://www.cve.org/CVERecord?id=CVE-2026-52930
- https://www.cve.org/CVERecord?id=CVE-2026-52935
- https://www.cve.org/CVERecord?id=CVE-2026-52939
- https://www.cve.org/CVERecord?id=CVE-2026-52940
- https://www.cve.org/CVERecord?id=CVE-2026-52942
- https://www.cve.org/CVERecord?id=CVE-2026-52946
- https://www.cve.org/CVERecord?id=CVE-2026-52947
- https://www.cve.org/CVERecord?id=CVE-2026-52948
- https://www.cve.org/CVERecord?id=CVE-2026-53131
- https://www.cve.org/CVERecord?id=CVE-2026-53132
- https://www.cve.org/CVERecord?id=CVE-2026-53133
- https://www.cve.org/CVERecord?id=CVE-2026-53134
- https://www.cve.org/CVERecord?id=CVE-2026-53135
- https://www.cve.org/CVERecord?id=CVE-2026-53136
- https://www.cve.org/CVERecord?id=CVE-2026-53137
- https://www.cve.org/CVERecord?id=CVE-2026-53138
- https://www.cve.org/CVERecord?id=CVE-2026-53139
- https://www.cve.org/CVERecord?id=CVE-2026-53140
- https://www.cve.org/CVERecord?id=CVE-2026-53141
- https://www.cve.org/CVERecord?id=CVE-2026-53142
- https://www.cve.org/CVERecord?id=CVE-2026-53143
- https://www.cve.org/CVERecord?id=CVE-2026-53144
- https://www.cve.org/CVERecord?id=CVE-2026-53145
- https://www.cve.org/CVERecord?id=CVE-2026-53146
- https://www.cve.org/CVERecord?id=CVE-2026-53147
- https://www.cve.org/CVERecord?id=CVE-2026-53148
- https://www.cve.org/CVERecord?id=CVE-2026-53149
- https://www.cve.org/CVERecord?id=CVE-2026-53150
- https://www.cve.org/CVERecord?id=CVE-2026-53151
- https://www.cve.org/CVERecord?id=CVE-2026-53152
- https://www.cve.org/CVERecord?id=CVE-2026-53153
- https://www.cve.org/CVERecord?id=CVE-2026-53154
- https://www.cve.org/CVERecord?id=CVE-2026-53156
- https://www.cve.org/CVERecord?id=CVE-2026-53157
- https://www.cve.org/CVERecord?id=CVE-2026-53158
- https://www.cve.org/CVERecord?id=CVE-2026-53159
- https://www.cve.org/CVERecord?id=CVE-2026-53160
- https://www.cve.org/CVERecord?id=CVE-2026-53161
- https://www.cve.org/CVERecord?id=CVE-2026-53162
- https://www.cve.org/CVERecord?id=CVE-2026-53163
- https://www.cve.org/CVERecord?id=CVE-2026-53164
- https://www.cve.org/CVERecord?id=CVE-2026-53166
- https://www.cve.org/CVERecord?id=CVE-2026-53167
- https://www.cve.org/CVERecord?id=CVE-2026-53168
- https://www.cve.org/CVERecord?id=CVE-2026-53175
- https://www.cve.org/CVERecord?id=CVE-2026-53176
- https://www.cve.org/CVERecord?id=CVE-2026-53177
- https://www.cve.org/CVERecord?id=CVE-2026-53179
- https://www.cve.org/CVERecord?id=CVE-2026-53180
- https://www.cve.org/CVERecord?id=CVE-2026-53181
- https://www.cve.org/CVERecord?id=CVE-2026-53182
- https://www.cve.org/CVERecord?id=CVE-2026-53183
- https://www.cve.org/CVERecord?id=CVE-2026-53184
- https://www.cve.org/CVERecord?id=CVE-2026-53185
- https://www.cve.org/CVERecord?id=CVE-2026-53186
- https://www.cve.org/CVERecord?id=CVE-2026-53187
- https://www.cve.org/CVERecord?id=CVE-2026-53188
- https://www.cve.org/CVERecord?id=CVE-2026-53189
- https://www.cve.org/CVERecord?id=CVE-2026-53190
- https://www.cve.org/CVERecord?id=CVE-2026-53191
- https://www.cve.org/CVERecord?id=CVE-2026-53192
- https://www.cve.org/CVERecord?id=CVE-2026-53193
- https://www.cve.org/CVERecord?id=CVE-2026-53194
- https://www.cve.org/CVERecord?id=CVE-2026-53195
- https://www.cve.org/CVERecord?id=CVE-2026-53196
- https://www.cve.org/CVERecord?id=CVE-2026-53197
- https://www.cve.org/CVERecord?id=CVE-2026-53198
- https://www.cve.org/CVERecord?id=CVE-2026-53199
- https://www.cve.org/CVERecord?id=CVE-2026-53202
- https://www.cve.org/CVERecord?id=CVE-2026-53203
- https://www.cve.org/CVERecord?id=CVE-2026-53205
- https://www.cve.org/CVERecord?id=CVE-2026-53207
- https://www.cve.org/CVERecord?id=CVE-2026-53208
- https://www.cve.org/CVERecord?id=CVE-2026-53209
- https://www.cve.org/CVERecord?id=CVE-2026-53210
- https://www.cve.org/CVERecord?id=CVE-2026-53211
- https://www.cve.org/CVERecord?id=CVE-2026-53212
- https://www.cve.org/CVERecord?id=CVE-2026-53213
- https://www.cve.org/CVERecord?id=CVE-2026-53214
- https://www.cve.org/CVERecord?id=CVE-2026-53215
- https://www.cve.org/CVERecord?id=CVE-2026-53216
- https://www.cve.org/CVERecord?id=CVE-2026-53217
- https://www.cve.org/CVERecord?id=CVE-2026-53218
- https://www.cve.org/CVERecord?id=CVE-2026-53219
- https://www.cve.org/CVERecord?id=CVE-2026-53220
- https://www.cve.org/CVERecord?id=CVE-2026-53221
- https://www.cve.org/CVERecord?id=CVE-2026-53223
- https://www.cve.org/CVERecord?id=CVE-2026-53224
- https://www.cve.org/CVERecord?id=CVE-2026-53225
- https://www.cve.org/CVERecord?id=CVE-2026-53226
- https://www.cve.org/CVERecord?id=CVE-2026-53227
- https://www.cve.org/CVERecord?id=CVE-2026-53228
- https://www.cve.org/CVERecord?id=CVE-2026-53229
- https://www.cve.org/CVERecord?id=CVE-2026-53230
- https://www.cve.org/CVERecord?id=CVE-2026-53233
- https://www.cve.org/CVERecord?id=CVE-2026-53234
- https://www.cve.org/CVERecord?id=CVE-2026-53235
- https://www.cve.org/CVERecord?id=CVE-2026-53236
- https://www.cve.org/CVERecord?id=CVE-2026-53237
- https://www.cve.org/CVERecord?id=CVE-2026-53238
- https://www.cve.org/CVERecord?id=CVE-2026-53239
- https://www.cve.org/CVERecord?id=CVE-2026-53240
- https://www.cve.org/CVERecord?id=CVE-2026-53241
- https://www.cve.org/CVERecord?id=CVE-2026-53242
- https://www.cve.org/CVERecord?id=CVE-2026-53245
- https://www.cve.org/CVERecord?id=CVE-2026-53246
- https://www.cve.org/CVERecord?id=CVE-2026-53247
- https://www.cve.org/CVERecord?id=CVE-2026-53248
- https://www.cve.org/CVERecord?id=CVE-2026-53249
- https://www.cve.org/CVERecord?id=CVE-2026-53250
- https://www.cve.org/CVERecord?id=CVE-2026-53251
- https://www.cve.org/CVERecord?id=CVE-2026-53252
- https://www.cve.org/CVERecord?id=CVE-2026-53253
- https://www.cve.org/CVERecord?id=CVE-2026-53254
- https://www.cve.org/CVERecord?id=CVE-2026-53255
- https://www.cve.org/CVERecord?id=CVE-2026-53256
- https://www.cve.org/CVERecord?id=CVE-2026-53258
- https://www.cve.org/CVERecord?id=CVE-2026-53259
- https://www.cve.org/CVERecord?id=CVE-2026-53261
- https://www.cve.org/CVERecord?id=CVE-2026-53262
- https://www.cve.org/CVERecord?id=CVE-2026-53263
- https://www.cve.org/CVERecord?id=CVE-2026-53264
- https://www.cve.org/CVERecord?id=CVE-2026-53265
- https://www.cve.org/CVERecord?id=CVE-2026-53266
- https://www.cve.org/CVERecord?id=CVE-2026-53267
- https://www.cve.org/CVERecord?id=CVE-2026-53268
- https://www.cve.org/CVERecord?id=CVE-2026-53269
- https://www.cve.org/CVERecord?id=CVE-2026-53270
- https://www.cve.org/CVERecord?id=CVE-2026-53271
- https://www.cve.org/CVERecord?id=CVE-2026-53272
- https://www.cve.org/CVERecord?id=CVE-2026-53273
- https://www.cve.org/CVERecord?id=CVE-2026-53274
- https://www.cve.org/CVERecord?id=CVE-2026-53275
- https://www.cve.org/CVERecord?id=CVE-2026-53277
- https://www.cve.org/CVERecord?id=CVE-2026-53325
- https://www.cve.org/CVERecord?id=CVE-2026-53327
- https://www.cve.org/CVERecord?id=CVE-2026-53328
- https://www.cve.org/CVERecord?id=CVE-2026-53329
- https://www.cve.org/CVERecord?id=CVE-2026-53330
- https://www.cve.org/CVERecord?id=CVE-2026-53331
- https://www.cve.org/CVERecord?id=CVE-2026-53332
- https://www.cve.org/CVERecord?id=CVE-2026-53333
- https://www.cve.org/CVERecord?id=CVE-2026-53334
- https://www.cve.org/CVERecord?id=CVE-2026-53335
- https://www.cve.org/CVERecord?id=CVE-2026-53336
- https://www.cve.org/CVERecord?id=CVE-2026-53337
- https://www.cve.org/CVERecord?id=CVE-2026-53338
- https://www.cve.org/CVERecord?id=CVE-2026-53339
- https://www.cve.org/CVERecord?id=CVE-2026-53340
- https://www.cve.org/CVERecord?id=CVE-2026-53341
- https://www.cve.org/CVERecord?id=CVE-2026-53342
- https://www.cve.org/CVERecord?id=CVE-2026-53343
- https://www.cve.org/CVERecord?id=CVE-2026-53345
- https://www.cve.org/CVERecord?id=CVE-2026-53346
- https://www.cve.org/CVERecord?id=CVE-2026-53347
- https://www.cve.org/CVERecord?id=CVE-2026-53349
- https://www.cve.org/CVERecord?id=CVE-2026-53350
- https://www.cve.org/CVERecord?id=CVE-2026-53352
- https://www.cve.org/CVERecord?id=CVE-2026-53353
- https://www.cve.org/CVERecord?id=CVE-2026-53354
- https://www.cve.org/CVERecord?id=CVE-2026-53355
- https://www.cve.org/CVERecord?id=CVE-2026-53356
- https://www.cve.org/CVERecord?id=CVE-2026-53359
- https://www.cve.org/CVERecord?id=CVE-2026-53361
- https://www.cve.org/CVERecord?id=CVE-2026-53362
- https://www.cve.org/CVERecord?id=CVE-2026-53363
- https://www.cve.org/CVERecord?id=CVE-2026-53366
- https://www.cve.org/CVERecord?id=CVE-2026-53381
- https://www.cve.org/CVERecord?id=CVE-2026-53382
- https://www.cve.org/CVERecord?id=CVE-2026-53383
- https://www.cve.org/CVERecord?id=CVE-2026-53384
- https://www.cve.org/CVERecord?id=CVE-2026-53385
- https://www.cve.org/CVERecord?id=CVE-2026-53386
- https://www.cve.org/CVERecord?id=CVE-2026-53387
- https://www.cve.org/CVERecord?id=CVE-2026-53388
- https://www.cve.org/CVERecord?id=CVE-2026-53389
- https://www.cve.org/CVERecord?id=CVE-2026-53390
- https://www.cve.org/CVERecord?id=CVE-2026-53391
- https://www.cve.org/CVERecord?id=CVE-2026-53392
- https://www.cve.org/CVERecord?id=CVE-2026-53393
- https://www.cve.org/CVERecord?id=CVE-2026-53394
- https://www.cve.org/CVERecord?id=CVE-2026-53397
- https://www.cve.org/CVERecord?id=CVE-2026-53398
- https://www.cve.org/CVERecord?id=CVE-2026-53399
- https://www.cve.org/CVERecord?id=CVE-2026-53400
- https://www.cve.org/CVERecord?id=CVE-2026-53402
- https://www.cve.org/CVERecord?id=CVE-2026-53403
- https://www.cve.org/CVERecord?id=CVE-2026-63794
- https://www.cve.org/CVERecord?id=CVE-2026-63795
- https://www.cve.org/CVERecord?id=CVE-2026-63796
- https://www.cve.org/CVERecord?id=CVE-2026-63797
- https://www.cve.org/CVERecord?id=CVE-2026-63798
- https://www.cve.org/CVERecord?id=CVE-2026-63800
- https://www.cve.org/CVERecord?id=CVE-2026-63801
- https://www.cve.org/CVERecord?id=CVE-2026-63802
- https://www.cve.org/CVERecord?id=CVE-2026-63803
- https://www.cve.org/CVERecord?id=CVE-2026-63804
- https://www.cve.org/CVERecord?id=CVE-2026-63805
- https://www.cve.org/CVERecord?id=CVE-2026-63806
- https://www.cve.org/CVERecord?id=CVE-2026-63807
- https://www.cve.org/CVERecord?id=CVE-2026-63808
- https://www.cve.org/CVERecord?id=CVE-2026-63809
- https://www.cve.org/CVERecord?id=CVE-2026-63810
- https://www.cve.org/CVERecord?id=CVE-2026-63812
- https://www.cve.org/CVERecord?id=CVE-2026-63814
- https://www.cve.org/CVERecord?id=CVE-2026-63815
- https://www.cve.org/CVERecord?id=CVE-2026-63816
- https://www.cve.org/CVERecord?id=CVE-2026-63817
- https://www.cve.org/CVERecord?id=CVE-2026-63818
- https://www.cve.org/CVERecord?id=CVE-2026-63819
- https://www.cve.org/CVERecord?id=CVE-2026-63821
- https://www.cve.org/CVERecord?id=CVE-2026-63822
- https://www.cve.org/CVERecord?id=CVE-2026-63823
- https://www.cve.org/CVERecord?id=CVE-2026-63824
- https://www.cve.org/CVERecord?id=CVE-2026-63825
- https://www.cve.org/CVERecord?id=CVE-2026-63826
- https://www.cve.org/CVERecord?id=CVE-2026-63827
- https://www.cve.org/CVERecord?id=CVE-2026-63828
- https://www.cve.org/CVERecord?id=CVE-2026-63829
- https://www.cve.org/CVERecord?id=CVE-2026-63830
- https://www.cve.org/CVERecord?id=CVE-2026-63831
- https://www.cve.org/CVERecord?id=CVE-2026-63832
- https://www.cve.org/CVERecord?id=CVE-2026-63833
- https://www.cve.org/CVERecord?id=CVE-2026-63834
- https://www.cve.org/CVERecord?id=CVE-2026-63835
- https://www.cve.org/CVERecord?id=CVE-2026-63836
- https://www.cve.org/CVERecord?id=CVE-2026-63867
- https://www.cve.org/CVERecord?id=CVE-2026-63868
- https://www.cve.org/CVERecord?id=CVE-2026-63869
- https://www.cve.org/CVERecord?id=CVE-2026-63870
- https://www.cve.org/CVERecord?id=CVE-2026-63871
- https://www.cve.org/CVERecord?id=CVE-2026-63873
- https://www.cve.org/CVERecord?id=CVE-2026-63874
- https://www.cve.org/CVERecord?id=CVE-2026-64187
- https://www.cve.org/CVERecord?id=CVE-2026-64188
- https://www.cve.org/CVERecord?id=CVE-2026-64189
- https://www.cve.org/CVERecord?id=CVE-2026-64191
- https://www.cve.org/CVERecord?id=CVE-2026-64205
- https://www.cve.org/CVERecord?id=CVE-2026-64206
- https://www.cve.org/CVERecord?id=CVE-2026-64207
- kernel-6.18.39-1.mga10
- kmod-virtualbox-7.2.8-28.mga10
- kmod-xtables-addons-3.30-3.mga10
- bluez-5.87-1.mga10
- wireless-regdb-20260530-1.mga10
- kernel-firmware-20260622-1.mga10
- drakx-installer-images-2.94-54.mga10
- kernel-firmware-nonfree-20260622-1.mga10.nonfree
- radeon-firmware-20260622-1.mga10.nonfree
- drakx-installer-images-2.94-54.mga10.nonfree
- kmod-nvidia-current-wopengpu-580.159.04-37.mga10.nonfree
Categorías: Actualizaciones de Seguridad
MGASA-2026-0311 - Updated libxfont2 packages fix security vulnerabilities
Publication date: 30 Jul 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-56001 , CVE-2026-56002 , CVE-2026-56003 Description
The updated packages fix security vulnerabilities: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow. (CVE-2026-56001) PCF Font Parsing Heap Buffer Overflow. (CVE-2026-56002) computeProps Property Buffer Heap Buffer Overflow. (CVE-2026-56003) References
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-56001 , CVE-2026-56002 , CVE-2026-56003 Description
The updated packages fix security vulnerabilities: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow. (CVE-2026-56001) PCF Font Parsing Heap Buffer Overflow. (CVE-2026-56002) computeProps Property Buffer Heap Buffer Overflow. (CVE-2026-56003) References
- https://bugs.mageia.org/show_bug.cgi?id=35859
- https://www.openwall.com/lists/oss-security/2026/07/08/1
- https://www.cve.org/CVERecord?id=CVE-2026-56001
- https://www.cve.org/CVERecord?id=CVE-2026-56002
- https://www.cve.org/CVERecord?id=CVE-2026-56003
- libxfont2-2.0.8-1.mga10
- libxfont2-2.0.6-2.1.mga9
Categorías: Actualizaciones de Seguridad
MGASA-2026-0310 - Updated 389-ds-base packages fix a security vulnerability
Publication date: 30 Jul 2026
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-9064 Description
The updated packages fix a security vulnerability: Unbounded ldap controls count in get_ldapmessage_controls_ext() causes cpu and heap amplification (remote dos). (CVE-2026-9064) References
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-9064 Description
The updated packages fix a security vulnerability: Unbounded ldap controls count in get_ldapmessage_controls_ext() causes cpu and heap amplification (remote dos). (CVE-2026-9064) References
- https://bugs.mageia.org/show_bug.cgi?id=35838
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HGVVCWTZBWDJ7HSAGE646TODMKUK56FR/
- https://bugzilla.redhat.com/show_bug.cgi?id=2480093
- https://github.com/389ds/389-ds-base/issues/7503
- https://www.cve.org/CVERecord?id=CVE-2026-9064
- 389-ds-base-3.1.3-2.1.mga10
Categorías: Actualizaciones de Seguridad




