FEDORA-2022-a0d7a5eaf2
Packages in this update:
xen-4.15.3-4.fc35
Update description:
insufficient TLB flush for x86 PV guests in shadow mode
[XSA-408, CVE-2022-33745]
Retbleed – arbitrary speculative code execution with return instructions
[XSA-407, CVE-2022-23816, CVE-2022-23825, CVE-2022-29900]
FEDORA-2022-4f7cd241e2
Packages in this update:
xen-4.16.1-8.fc36
Update description:
insufficient TLB flush for x86 PV guests in shadow mode
[XSA-408, CVE-2022-33745]
FEDORA-2022-939ba2e405
Packages in this update:
tmux-top-0.1.1-5.fc36
Update description:
New upstream release: 0.1.1
It was discovered that SPIP, a website engine for publishing, would allow
a malicious user to execute arbitrary code or escalate privileges.
Several vulnerabilities have been discovered in the OpenJDK Java runtime,
which may result in the execution of arbitrary Java bytecode or the
bypass of the Java sandbox.
Several vulnerabilities have been discovered in the Linux kernel that may
lead to privilege escalation, denial of service or information leaks:
FEDORA-2022-ee81809570
Packages in this update:
kubernetes-1.24.1-7.fc36
Update description:
This package release removes references completely for Dockershim. If you still require support for Docker please visit for more info https://www.mirantis.com/blog/mirantis-to-take-over-support-of-kubernetes-dockershim-2/
This was originally a bug-fix that removed arguments no longer used in the 1.24 Kublet which stemmed from Dockershim. Since Dockershim is now out of tree this package won’t support it unless there’s a compelling use-case.
More info: https://kubernetes.io/blog/2022/02/17/dockershim-faq/
Shell completions have been added beyond bash. Fish and shell completions are now included.
Users should also test the usage of sysusers
FEDORA-2022-3efc2a74cf
Packages in this update:
kubernetes-1.24.1-5.fc36
Update description:
This package release removes references completely for Dockershim. If you still require support for Docker please visit for more info https://www.mirantis.com/blog/mirantis-to-take-over-support-of-kubernetes-dockershim-2/
This was originally a bug-fix that removed arguments no longer used in the 1.24 Kublet which stemmed from Dockershim. Since Dockershim is now out of tree this package won’t support it unless there’s a compelling use-case.
More info: https://kubernetes.io/blog/2022/02/17/dockershim-faq/
FEDORA-2022-33e816bc37
Packages in this update:
python-ujson-5.4.0-1.fc35
Update description:
Security fix for CVE-2022-31116, CVE-2022-31117, and CVE-2021-45958.
See https://github.com/ultrajson/ultrajson/releases for release notes since 3.0.0. Despite the major version bump, this should be a compatible update. See also https://pagure.io/fesco/issue/2834 .
FEDORA-2022-6d129f14f2
Packages in this update:
ceph-16.2.10-1.fc35
Update description:
ceph 16.2.10 GA
Security fix for CVE-2022-0670
Posts navigation
News, Advisories and much more