Fedora 23.x — End of Life

EOL Medium risk
EOL: Dec 20, 20161 release in this series1 CVE

Fedora 23.x — All releases

VersionReleasedActive supportEOL dateLatest patchStatusAlert me
23Nov 3, 2015Dec 20, 201623EOL

CVEs affecting Fedora 23.x (1)

CVESeverityCVSSEPSSKEVCycleDescriptionPublished
CVE-2015-5291MEDIUM6.83.63%23Heap-based buffer overflow in PolarSSL 1.x before 1.2.17 and ARM mbed TLS (formerly PolarSSL) 1.3.x before 1.3.14 and 2.…Nov 2, 2015

Fedora 23.x is EOL — migrate to Fedora 24.x

Fedora 24.x is the next major release. Plan your upgrade before Fedora 23.x stops receiving security patches.

See Fedora 24.x

Frequently asked questions

Is Fedora 23 end of life?

Yes. All Fedora 23.x releases have reached end of life and no longer receive security patches. There are 1 known CVE affecting Fedora 23.x. Migrate to Fedora 24.x as soon as possible.

What CVEs affect Fedora 23?

There are 1 CVE tracked for Fedora 23.x. See the full list above with CVSS and EPSS scores.

What is the latest Fedora 23 version?

The latest Fedora 23.x patch release is 23, released on November 3, 2015. Always run the latest patch to benefit from all security fixes.

How to migrate from Fedora 23 to Fedora 24?

To migrate from Fedora 23 to Fedora 24: (1) review the official Fedora 24 migration guide for breaking changes, (2) update dependencies and configuration accordingly, (3) test thoroughly in a staging environment, (4) deploy with a rollback plan. Starting early gives you time to resolve compatibility issues before your current version reaches end of life.

Is it safe to run Fedora 23 in production?

No. Fedora 23 has reached end of life and security vulnerabilities are no longer patched. Upgrade to a supported version immediately.

Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA