FEDORA-2025-e136b45e2a
Packages in this update:
pam-u2f-1.3.1-1.fc41
Update description:
pam-u2f fix to resolve CVE-2025-23013 (Partial Authentication Bypass). CVSS score 7.3
pam-u2f-1.3.1-1.fc41
pam-u2f fix to resolve CVE-2025-23013 (Partial Authentication Bypass). CVSS score 7.3
vaultwarden-1.32.7-1.fc41
update to 1.32.7
freeipa-4.12.2-3.fc40
CVE-2024-11029
Release note: https://www.freeipa.org/release-notes/4-12-3.html
freeipa-4.12.2-7.fc41
CVE-2024-11029
Release note: https://www.freeipa.org/release-notes/4-12-3.html
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-21363.
This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-21331.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-21298.
git-lfs-3.6.1-1.fc41
Update to latest version
Fix CVE-2024-53263
git-lfs-3.6.1-1.fc40
Update to latest version
Fix CVE-2024-53263