Fedora Opam Update Addresses Critical Buffer Overflow Vulnerability
ID: 91b60d5e-20b6-5f5c-95e7-82ccb2a26103
STIX ID: report--91b60d5e-20b6-5f5c-95e7-82ccb2a26103
Feed Name: ThreatCluster
Threat Score
Fedora released updates fixing CVE-2026-57825, a critical buffer overflow in the opam package manager that could allow arbitrary code execution; systems running opam on Fedora 43 and 44 should upgrade to opam 2.5.2 via dnf. The update was published on July 19, 2026 after rebuilding OCaml 5.5.0 and the issue was confirmed by the opam maintainer.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
