ChangeLog for: 2026-03-26 01:36:00
a/kernel-firmware-20260323_51d2775-noarch-1.txz: Upgraded.
a/kernel-generic-6.18.20-x86_64-1.txz: Upgraded.
a/sysvinit-3.17-x86_64-1.txz: Upgraded.
d/kernel-headers-6.18.20-x86-1.txz: Upgraded.
d/llvm-22.1.2-x86_64-1.txz: Upgraded.
k/kernel-source-6.18.20-noarch-1.txz: Upgraded.
MAC80211_HWSIM n -> m
WWAN_HWSIM n -> m
Thanks to USUARIONUEVO.
l/libcap-ng-0.9.2-x86_64-1.txz: Upgraded.
l/libclc-22.1.2-x86_64-1.txz: Upgraded.
l/nodejs-24.14.1-x86_64-1.txz: Upgraded.
l/pygobject3-3.56.2-x86_64-1.txz: Upgraded.
l/python-build-1.4.2-x86_64-1.txz: Upgraded.
l/python-requests-2.33.0-x86_64-1.txz: Upgraded.
l/wireplumber-0.5.14-x86_64-1.txz: Upgraded.
n/bind-9.20.21-x86_64-1.txz: Upgraded.
This update fixes security issues:
Fix unbounded NSEC3 iterations when validating referrals to unsigned
delegations.
Fix memory leaks in code preparing DNSSEC proofs of non-existence.
Prevent a crash in code processing queries containing a TKEY record.
Fix a stack use-after-return flaw in SIG(0) handling code.
For more information, see:
https://kb.isc.org/docs/cve-2026-1519
https://kb.isc.org/docs/cve-2026-3104
https://kb.isc.org/docs/cve-2026-3119
https://kb.isc.org/docs/cve-2026-3591
https://www.cve.org/CVERecord?id=CVE-2026-1519
https://www.cve.org/CVERecord?id=CVE-2026-3104
https://www.cve.org/CVERecord?id=CVE-2026-3119
https://www.cve.org/CVERecord?id=CVE-2026-3591
(* Security fix *)
x/intel-gmmlib-22.10.0-x86_64-1.txz: Upgraded.
extra/tigervnc/tigervnc-1.16.1-x86_64-1.txz: Upgraded.
The bug fix release TigerVNC 1.16.1 is now available. This release is
primarily a security release to fix an issue in x0vncserver, where other
users can observe and manipulate the screen contents. Users of
x0vncserver are advised to update immediately.
The release also contains a fix for using the Plain security type with
the new w0vncserver, as well as some translation updates.
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.