Skip to content
Fedora 44 Prometheus Update Denial of Service Issues CVE-2026

Fedora 44 Prometheus Update Denial of Service Issues CVE-2026

Linuxsecurity •LinuxSecurity Advisories • June 23, 2026

* Fri Jun 12 2026 Mikel Olasagasti Uranga - 3.12.0-1 - Update to 3.12.0 - Closes rhbz#2482792

* Fri Jun 12 2026 Mikel Olasagasti Uranga - 3.12.0-1 - Update to 3.12.0 - Closes rhbz#2482792

[ 1 ] Bug #2481306 - CVE-2026-42154 prometheus: Prometheus: Denial of Service via uncontrolled memory allocation in remote read endpoint [fedora-all] [ 2 ] Bug #2481308 - CVE-2026-42151 prometheus: Prometheus: Information disclosure of Azure OAuth client secret via config API [fedora-all] [ 3 ] Bug #2486235 - CVE-2026-45287 prometheus: OpenTelemetry-Go: Denial of Service due to file descriptor leak [fedora-all]

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-ebaf2bfd71' at the command line. For more information, refer to the dnf documentation available at

Get the latest Linux and open source security news straight to your inbox.