Skip to content

fix(python3.14): pin-forward to f43 for 5 CVEs#17264

Draft
tobiasb-ms wants to merge 1 commit into
tomls/base/mainfrom
tobiasb-ms/cve-fix-python3.14
Draft

fix(python3.14): pin-forward to f43 for 5 CVEs#17264
tobiasb-ms wants to merge 1 commit into
tomls/base/mainfrom
tobiasb-ms/cve-fix-python3.14

Conversation

@tobiasb-ms
Copy link
Copy Markdown
Contributor

CVE Pin-Forward: python3.14

Pins python3.14 to Fedora f43 HEAD (fc230a4) to pick up
5 CVE patches added upstream.

CVEs Resolved

CVE Severity Status
CVE-2026-4519 High Tracked
CVE-2026-4786 High Tracked
CVE-2026-6100 Critical Tracked
CVE-2026-1502 Additional
CVE-2026-5713 Additional

Fedora Spec Delta

Old commit: aaf6ec2
New commit: fc230a4

New patches:

  • 00486-gh-148646-add---enable-prebuilt-jit-stencils-configure-flag.patch

Pin locks/python3.14.lock to Fedora f43 HEAD to pick up
CVE-specific patches added upstream.

CVEs resolved (3 tracked, 2 additional):

  Tracked:
    CVE-2026-4519 (High)
    CVE-2026-4786 (High)
    CVE-2026-6100 (Critical)

  Additional:
    CVE-2026-1502
    CVE-2026-5713

Fedora f43 spec delta (aaf6ec2..fc230a4):
  + 00486-gh-148646-add---enable-prebuilt-jit-stencils-configure-flag.patch
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant