|
| 1 | +# Version 7.3.1 2026-05-26 |
| 2 | + |
| 3 | +This release focuses on security updates, a Linux kernel update, Docker and ZFS updates, storage fixes, WebGUI/system fixes, and base distro package updates. |
| 4 | + |
| 5 | +Recommended for all users, especially those who want the latest security and stability fixes. |
| 6 | + |
| 7 | +## Upgrading |
| 8 | + |
| 9 | +For step-by-step instructions, see [Updating Unraid](/unraid-os/updating-unraid/). Questions about your [license](/unraid-os/troubleshooting/licensing-faq/)? |
| 10 | + |
| 11 | +## Known issues |
| 12 | + |
| 13 | +* No new release-specific known issues are reported for this release. See the [Unraid OS 7.3.0](/unraid-os/release-notes/7.3.0/) release notes for previously documented issues that may still apply. |
| 14 | + |
| 15 | +## Notes |
| 16 | + |
| 17 | +* This release includes security-related package updates. |
| 18 | +* The Unraid API version remains 4.34.0. |
| 19 | + |
| 20 | +## Rolling back |
| 21 | + |
| 22 | +* No special rollback notes for this release. |
| 23 | + |
| 24 | +## Changes vs. [Unraid OS 7.3.0](/unraid-os/release-notes/7.3.0/) |
| 25 | + |
| 26 | +### Security |
| 27 | + |
| 28 | +* Security: updated bind to address CVE-2026-1519, CVE-2026-3039, CVE-2026-3104, CVE-2026-3119, CVE-2026-3591, CVE-2026-3592, CVE-2026-3593, CVE-2026-5946, and CVE-2026-5947. |
| 29 | +* Security: updated dnsmasq to address CVE-2026-2291, CVE-2026-4890, CVE-2026-4891, CVE-2026-4892, CVE-2026-4893, and CVE-2026-5172. |
| 30 | +* Security: updated nginx to address CVE-2025-53859, CVE-2026-1642, CVE-2026-27651, CVE-2026-27654, CVE-2026-27784, CVE-2026-28753, CVE-2026-28755, CVE-2026-32647, CVE-2026-40460, CVE-2026-40701, CVE-2026-42934, CVE-2026-42945, and CVE-2026-42946. |
| 31 | +* Security: updated rsync to address CVE-2026-29518, CVE-2026-43617, CVE-2026-43618, CVE-2026-43619, CVE-2026-43620, and CVE-2026-45232. |
| 32 | +* Security: updated Docker to 29.5.1, including Docker upstream CVE fixes. |
| 33 | +* Security: updated avahi, glibc, and jq with NVD-referenced security fixes listed in the base distro updates below. |
| 34 | + |
| 35 | +### Containers / Docker |
| 36 | + |
| 37 | +* Improvement: Docker engine updated to 29.5.1. |
| 38 | +* Fix: the Docker container dropdown menu remains usable when many containers are shown. |
| 39 | + |
| 40 | +### Storage |
| 41 | + |
| 42 | +* Improvement: ZFS updated to 2.4.2_6.18.33_Unraid. |
| 43 | +* Fix: unassigned spare disks now spin down again as expected. |
| 44 | +* Fix: mirrored boot pools can recover from a degraded state after a member returns for cache pool usage. |
| 45 | +* Fix: relaxed the pool name validity check when importing existing pools to match pre-7.3 validation. |
| 46 | +* Fix: Replacing online raidz device can fail |
| 47 | + |
| 48 | +### WebGUI / System |
| 49 | + |
| 50 | +* Fix: restored missing Connect version-check logic so required updates are detected correctly. |
| 51 | +* Fix: file uploads are now handled correctly on Safari iOS. |
| 52 | + |
| 53 | +### Networking / Hardware |
| 54 | + |
| 55 | +* Fix: dhcpcd no longer waits 60 seconds to obtain an IP address. |
| 56 | + |
| 57 | +### Linux kernel |
| 58 | + |
| 59 | +* Linux kernel: update to 6.18.33-Unraid. |
| 60 | + |
| 61 | +## Base distro updates |
| 62 | + |
| 63 | +### Updated packages (25) |
| 64 | + |
| 65 | +* aaa_glibc-solibs: version 2.42 -> 2.43 |
| 66 | +* at-spi2-core: version 2.60.3 -> 2.60.4 |
| 67 | +* avahi: version 0.8-3_SBo_LT -> 20260508_3737842-1_SBo (NVD: CVE-2023-38469, CVE-2023-38470, CVE-2023-38471, CVE-2023-38472, CVE-2023-38473) |
| 68 | +* bash: version 5.3.009 -> 5.3.009-2 |
| 69 | +* bind: version 9.20.22 -> 9.20.23 (CVE-2026-3039, CVE-2026-3592, CVE-2026-3593, CVE-2026-5946, CVE-2026-5947; NVD: CVE-2026-5950) |
| 70 | +* dnsmasq: version 2.92 -> 2.92rel2 |
| 71 | +* docker: version 29.4.3-1_LT -> 29.5.1-1_LT |
| 72 | +* elogind: version 255.24 -> 255.25 |
| 73 | +* fontconfig: version 2.17.1-5 -> 2.18.0-2 |
| 74 | +* glibc: version 2.42-2_LT -> 2.43 (NVD: CVE-2025-15281, CVE-2026-0861, CVE-2026-0915) |
| 75 | +* jq: version 1.6-1_SBo -> 1.8.1-1_SBo (NVD: CVE-2024-53427, CVE-2025-9403) |
| 76 | +* less: version 692 -> 702 |
| 77 | +* libXi: version 1.8.2 -> 1.8.3 |
| 78 | +* libedit: version 20260508_3.1 -> 20260512_3.1 |
| 79 | +* libusb: version 1.0.29 -> 1.0.30 |
| 80 | +* libusb-compat: version 0.1.8 -> 0.1.9 |
| 81 | +* lvm2: version 2.03.40 -> 2.03.41 |
| 82 | +* mesa: version 26.1.0 -> 26.1.1 |
| 83 | +* nginx: version 1.27.2-1_SBo_LT -> 1.30.1-1_SBo_LT (NVD: CVE-2025-53859, CVE-2026-1642, CVE-2026-27651, CVE-2026-27654, CVE-2026-27784, CVE-2026-28753, CVE-2026-28755, CVE-2026-32647, CVE-2026-40460, CVE-2026-40701, CVE-2026-42934, CVE-2026-42945, CVE-2026-42946) |
| 84 | +* rsync: version 3.4.2 -> 3.4.3 (CVE-2026-29518, CVE-2026-43617, CVE-2026-43618, CVE-2026-43619, CVE-2026-43620, CVE-2026-45232) |
| 85 | +* samba: version 4.22.8-1_LT -> 4.22.10-1_LT |
| 86 | +* util-linux: version 2.42-2 -> 2.42.1 |
| 87 | +* which: version 2.23 -> 2.25 |
| 88 | +* xev: version 1.2.6 -> 1.2.7 |
| 89 | +* xfsprogs: version 7.0.0 -> 7.0.1 |
| 90 | +* zfs: version 2.4.1_6.18.29_Unraid-1_LT -> 2.4.2_6.18.33_Unraid-1_LT |
0 commit comments