https://bugzilla.redhat.com/show_bug.cgi?id=2379982
Bug ID: 2379982
Summary: CVE-2025-53019 ImageMagick: ImageMagick Memory Leak
[epel-10]
Product: Fedora EPEL
Version: epel10
Status: NEW
Whiteboard: {"flaws": ["e57171f0-4d11-4b12-a8fc-5c9c23647c32"]}
Component: ImageMagick
Keywords: Security, SecurityTracking
Severity: low
Priority: low
Assignee: luya_tfz(a)thefinalzone.net
Reporter: jmoroney(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: blaise(a)gmail.com, davide(a)cavalca.name,
epel-packagers-sig(a)lists.fedoraproject.org,
fedora(a)famillecollet.com, luya_tfz(a)thefinalzone.net,
michel(a)michel-slm.name, ngompa13(a)gmail.com,
pampelmuse(a)gmx.at
Blocks: 2379949
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2379982
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2379981
Bug ID: 2379981
Summary: CVE-2025-53015 ImageMagick: ImageMagick unbounded loop
[epel-10]
Product: Fedora EPEL
Version: epel10
Status: NEW
Whiteboard: {"flaws": ["c28019b4-019a-4b44-899d-8c1541627a9e"]}
Component: ImageMagick
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: luya_tfz(a)thefinalzone.net
Reporter: jmoroney(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: blaise(a)gmail.com, davide(a)cavalca.name,
epel-packagers-sig(a)lists.fedoraproject.org,
fedora(a)famillecollet.com, luya_tfz(a)thefinalzone.net,
michel(a)michel-slm.name, ngompa13(a)gmail.com,
pampelmuse(a)gmx.at
Blocks: 2379948
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2379981
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2379980
Bug ID: 2379980
Summary: CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer
Overflow [epel-10]
Product: Fedora EPEL
Version: epel10
Status: NEW
Whiteboard: {"flaws": ["ba476b9c-f11d-4748-a286-60f4d582d0d3"]}
Component: ImageMagick
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: luya_tfz(a)thefinalzone.net
Reporter: jmoroney(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: blaise(a)gmail.com, davide(a)cavalca.name,
epel-packagers-sig(a)lists.fedoraproject.org,
fedora(a)famillecollet.com, luya_tfz(a)thefinalzone.net,
michel(a)michel-slm.name, ngompa13(a)gmail.com,
pampelmuse(a)gmx.at
Blocks: 2379947
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2379980
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2210415
Bug ID: 2210415
Summary: gajim-1.8.0 is available
Product: Fedora
Version: rawhide
Status: NEW
Component: gajim
Keywords: FutureFeature, Triaged
Assignee: mschmidt(a)redhat.com
Reporter: upstream-release-monitoring(a)fedoraproject.org
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
lemenkov(a)gmail.com, mschmidt(a)redhat.com,
redhat-bugzilla(a)linuxnetz.de, suraia(a)ikkoku.de
Target Milestone: ---
Classification: Fedora
Releases retrieved: 1.8.0
Upstream release that is considered latest: 1.8.0
Current version/release in rawhide: 1.7.3-2.fc39
URL: https://gajim.org/
Please consult the package updates policy before you issue an update to a
stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/
More information about the service that created this bug can be found at:
https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_M…
Please keep in mind that with any upstream change, there may also be packaging
changes that need to be made. Specifically, please remember that it is your
responsibility to review the new version to ensure that the licensing is still
correct and that no non-free or legally problematic items have been added
upstream.
Based on the information from Anitya:
https://release-monitoring.org/project/870/
To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/gajim
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2210415
https://bugzilla.redhat.com/show_bug.cgi?id=2210464
Bug ID: 2210464
Summary: python-nbxmpp-4.3.0 is available
Product: Fedora
Version: rawhide
Status: NEW
Component: python-nbxmpp
Keywords: FutureFeature, Triaged
Assignee: mschmidt(a)redhat.com
Reporter: upstream-release-monitoring(a)fedoraproject.org
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
mschmidt(a)redhat.com, suraia(a)ikkoku.de
Target Milestone: ---
Classification: Fedora
Releases retrieved: 4.3.0
Upstream release that is considered latest: 4.3.0
Current version/release in rawhide: 4.2.2-1.fc39
URL: https://dev.gajim.org/gajim/python-nbxmpp/
Please consult the package updates policy before you issue an update to a
stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/
More information about the service that created this bug can be found at:
https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_M…
Please keep in mind that with any upstream change, there may also be packaging
changes that need to be made. Specifically, please remember that it is your
responsibility to review the new version to ensure that the licensing is still
correct and that no non-free or legally problematic items have been added
upstream.
Based on the information from Anitya:
https://release-monitoring.org/project/12980/
To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/python-nbxmpp
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2210464
https://bugzilla.redhat.com/show_bug.cgi?id=2374520
Bug ID: 2374520
Summary: python-eventlet-0.40.1 is available
Product: Fedora
Version: rawhide
Status: NEW
Component: python-eventlet
Keywords: FutureFeature, Triaged
Assignee: peter.stensmyr(a)aiven.io
Reporter: upstream-release-monitoring(a)fedoraproject.org
QA Contact: extras-qa(a)fedoraproject.org
CC: apevec(a)redhat.com,
epel-packagers-sig(a)lists.fedoraproject.org,
igor.raits(a)gmail.com, kevin(a)scrye.com,
peter.stensmyr(a)aiven.io,
python-packagers-sig(a)lists.fedoraproject.org
Target Milestone: ---
Classification: Fedora
Releases retrieved: 0.40.1
Upstream release that is considered latest: 0.40.1
Current version/release in rawhide: 0.40.0-1.fc43
URL: http://eventlet.net
Please consult the package updates policy before you issue an update to a
stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/
More information about the service that created this bug can be found at:
https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_M…
Please keep in mind that with any upstream change, there may also be packaging
changes that need to be made. Specifically, please remember that it is your
responsibility to review the new version to ensure that the licensing is still
correct and that no non-free or legally problematic items have been added
upstream.
Based on the information from Anitya:
https://release-monitoring.org/project/13191/
To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/python-eventlet
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2374520
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2336942
Bug ID: 2336942
Summary: Changing Background doesn't populate with images
Product: Fedora EPEL
Version: epel9
Hardware: x86_64
OS: Linux
Status: NEW
Component: cinnamon
Severity: medium
Assignee: epel-packagers-sig(a)lists.fedoraproject.org
Reporter: will.senn(a)gmail.com
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
leigh123linux(a)googlemail.com, miketwebster(a)gmail.com
Target Milestone: ---
Classification: Fedora
Description of problem:
When I right click on the desktop, choose Change Desktop Background, it doesn't
show any wallpapers.
Version-Release number of selected component (if applicable):
cinnamon-5.6.8-2.el9.src.rpm
How reproducible:
as described, every time.
Steps to Reproduce:
1. Right click on the desktop
2. Choose Change Desktop Background
3. Click on any folder or add one
Actual results:
Nothing is displayed and nothing can be chosen as background
Expected results:
Images to choose as background should appear
Additional info:
This has been addressed in other ports:
https://salsa.debian.org/cinnamon-team/cinnamon/-/commit/6172cacec9d5012ad0…
The workaround found in the patch is to edit:
/usr/share/cinnamon/cinnamon-settings-users/cinnamon-settings-users.py
/usr/share/cinnamon/cinnamon-settings/bin/imtools.py
/usr/share/cinnamon/cinnamon-settings/modules/cs_backgrounds.py
/usr/share/cinnamon/cinnamon-settings/modules/cs_user.py
and change instances of Image.ANTIALIAS to Image.LANCZOS
This works and the problem is solved in my case.
--
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2336942
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2341890
Bug ID: 2341890
Summary: CVE-2024-55195 OpenImageIO: An allocation-size-too-big
bug in the component /imagebuf.cpp of OpenImageIO
[epel-9]
Product: Fedora EPEL
Version: epel9
Status: NEW
Whiteboard: {"flaws": ["c90d8ac3-88a8-43c0-8d77-d360129f6ea7"]}
Component: OpenImageIO
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: hobbes1069(a)gmail.com
Reporter: ahanwate(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
hobbes1069(a)gmail.com
Blocks: 2341864
Target Milestone: ---
Classification: Fedora
More information about this security flaw is available in the following bug:
https://bugzilla.redhat.com/show_bug.cgi?id=2341864
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2341890
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2341889
Bug ID: 2341889
Summary: CVE-2024-55195 OpenImageIO: An allocation-size-too-big
bug in the component /imagebuf.cpp of OpenImageIO
[epel-8]
Product: Fedora EPEL
Version: epel8
Status: NEW
Whiteboard: {"flaws": ["c90d8ac3-88a8-43c0-8d77-d360129f6ea7"]}
Component: OpenImageIO
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: hobbes1069(a)gmail.com
Reporter: ahanwate(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
hobbes1069(a)gmail.com
Blocks: 2341864
Target Milestone: ---
Classification: Fedora
More information about this security flaw is available in the following bug:
https://bugzilla.redhat.com/show_bug.cgi?id=2341864
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2341889
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…