ChangeLog for: 2025-08-28 23:31:29
a/kernel-firmware-20250828_260ff42-noarch-1.txz: Upgraded.
a/kernel-generic-6.12.44-x86_64-1.txz: Upgraded.
d/cmake-4.1.1-x86_64-1.txz: Upgraded.
d/kernel-headers-6.12.44-x86-1.txz: Upgraded.
k/kernel-source-6.12.44-noarch-1.txz: Upgraded.
l/libnss_nis-3.4-x86_64-1.txz: Upgraded.
l/pcre2-10.46-x86_64-1.txz: Upgraded.
This is a security-only release, to address CVE-2025-58050.
Compared to 10.45, this release has only a minimal code change to prevent a
read-past-the-end memory error, of arbitrary length. An attacker-controlled
regex pattern is required, and it cannot be triggered by providing crafted
subject (match) text. The (*ACCEPT) and (*scs:) pattern features must be used
together.
Release 10.44 and earlier are not affected.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2025-58050
(* Security fix *)
n/nftables-1.1.5-x86_64-1.txz: Upgraded.
xap/NetworkManager-openvpn-1.12.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/linux-6.16.x/kernel-generic-6.16.4-x86_64-1.txz: Upgraded.
testing/packages/linux-6.16.x/kernel-headers-6.16.4-x86-1.txz: Upgraded.
testing/packages/linux-6.16.x/kernel-source-6.16.4-noarch-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.