logo

Fedora Opam Update Addresses Critical Buffer Overflow Vulnerability

ID: 91b60d5e-20b6-5f5c-95e7-82ccb2a26103

STIX ID: report--91b60d5e-20b6-5f5c-95e7-82ccb2a26103

Feed Name: ThreatCluster

Threat Score
70/100

Date Published: 2026-07-19

Date Updated: 2026-07-20

...
...

Fedora released updates fixing CVE-2026-57825, a critical buffer overflow in the opam package manager that could allow arbitrary code execution; systems running opam on Fedora 43 and 44 should upgrade to opam 2.5.2 via dnf. The update was published on July 19, 2026 after rebuilding OCaml 5.5.0 and the issue was confirmed by the opam maintainer.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.