Fedora Security Advisories

roundcubemail-1.6.12-1.el10_1

1 week 3 days ago
FEDORA-EPEL-2025-e58ddd2daf Packages in this update:
  • roundcubemail-1.6.12-1.el10_1
Update description: Release 1.6.12
  • Support IPv6 in database DSN (#9937)
  • Don't force specific error_reporting setting
  • Fix compatibility with PHP 8.5 regarding array_first()
  • Remove X-XSS-Protection example from .htaccess file (#9875)
  • Fix "Assign to group" action state after creation of a first group (#9889)
  • Fix bug where contacts search would fail if contactlist_fields contained vcard fields (#9850)
  • Fix bug where an mbox export file could include inconsistent message delimiters (#9879)
  • Fix parsing of inline styles that aren't well-formatted (#9948)
  • Fix Cross-Site-Scripting vulnerability via SVG's animate tag
  • Fix Information Disclosure vulnerability in the HTML style sanitizer

util-linux-2.40.4-8.fc42

1 week 4 days ago
FEDORA-2025-fc18ab1e37 Packages in this update:
  • util-linux-2.40.4-8.fc42
Update description:
  • fix setpwnam() buffer use [CVE-2025-14104]
  • libblkid: use snprintf() instead of sprintf()

mingw-glib2-2.84.4-1.fc42

1 week 5 days ago
FEDORA-2025-b2df36b70a Packages in this update:
  • mingw-glib2-2.84.4-1.fc42
Update description:

Update to glib-2.84.4 and backport fixes for CVE-2025-13601, CVE-2025-14087 and CVE-2025-14512.

chromium-143.0.7499.109-2.el9

1 week 6 days ago
FEDORA-EPEL-2025-69e9a501c7 Packages in this update:
  • chromium-143.0.7499.109-2.el9
Update description:

Update to 143.0.7499.109

* High: Under coordination * Medium CVE-2025-14372: Use after free in Password Manager * Medium CVE-2025-14373: Inappropriate implementation in Toolbar

chromium-143.0.7499.109-2.fc42

1 week 6 days ago
FEDORA-2025-a315866a59 Packages in this update:
  • chromium-143.0.7499.109-2.fc42
Update description:

Update to 143.0.7499.109

* High: Under coordination * Medium CVE-2025-14372: Use after free in Password Manager * Medium CVE-2025-14373: Inappropriate implementation in Toolbar

chromium-143.0.7499.109-2.el10_2

1 week 6 days ago
FEDORA-EPEL-2025-fdf05692b5 Packages in this update:
  • chromium-143.0.7499.109-2.el10_2
Update description:

Update to 143.0.7499.109

* High: Under coordination * Medium CVE-2025-14372: Use after free in Password Manager * Medium CVE-2025-14373: Inappropriate implementation in Toolbar

chromium-143.0.7499.109-2.fc43

1 week 6 days ago
FEDORA-2025-1077c09b50 Packages in this update:
  • chromium-143.0.7499.109-2.fc43
Update description:

Update to 143.0.7499.109

* High: Under coordination * Medium CVE-2025-14372: Use after free in Password Manager * Medium CVE-2025-14373: Inappropriate implementation in Toolbar
Checked
26 minutes 32 seconds ago