Linuxsecurity Critical Information Disclosure Fix for Erlang in Fedora 43 and 44
Article Content
- •CVE-2026-48855 allows information disclosure via symlink resolution in SFTP.
- •Fedora 43 and 44 users are affected; updates were released on June 13, 2026.
- •Users should apply the patch using the 'dnf' update program to secure their systems.
Fedora has released important updates for Erlang to address CVE-2026-48855, a vulnerability that allows information disclosure through symlink resolution in SFTP. This flaw affects users of Fedora 43 and 44, with the fix backported by Peter Lemenkov. The CVE was published on June 10, 2026, and the updates were made available on June 13, 2026. Users are advised to upgrade their systems using the 'dnf' update program to mitigate the risk. The vulnerability could potentially expose sensitive information, impacting security for applications relying on Erlang's SSH capabilities. The updates are critical for maintaining system integrity and user privacy.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Fedora and CVE-2026-48855 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Oracle Issues September 2026 Security Update Addressing 673 Vulnerabilities On September 15, 2026, Oracle released a Critical Security Patch Update (CSPU) addressing 673 vulnerabilities across 17 product families, including Oracle E-Business Suite and Fusion Middleware. Among these, 159 patches were for E-Business Suite, and 153 for Fusion Middleware, with 19 and 78 vulnerabilities…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…