Updated rest packages fix a security vulnerability
Publication date: 23 Sep 2026Modification date: 23 Sep 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-16615
Description
Weak random number generation in pkce implementation. (CVE-2026-16615)
References
- https://bugs.mageia.org/show_bug.cgi?id=36176
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/6Q63SLBWJIJZVOY6R6AXMKGOBBO26LVB/
- https://bugzilla.redhat.com/show_bug.cgi?id=2504432
- https://gitlab.gnome.org/GNOME/librest/-/issues/25
- https://www.cve.org/CVERecord?id=CVE-2026-16615
SRPMS
10/core
- rest-0.10.2-2.1.mga10
9/core
- rest-0.9.1-2.1.mga9