CVE-2025-7493: host to admin escalation prevention: https://www.freeipa.org/release-notes/4-12-5.html
Update FreeIPA to latest fixes from ipa-4-12 branch
Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:
sudo dnf upgrade --refresh --advisory=FEDORA-2025-1a3968c333
Please log in to add feedback.
This update has been submitted for testing by abbra.
This update's test gating status has been changed to 'waiting'.
This update's test gating status has been changed to 'waiting'.
This update's test gating status has been changed to 'passed'.
Need to rebuild with a version fix -- metadata still has 4.12.2 in it, so instead of 4.12.5-1.fc41 we end up with 4.12.2-1.fc41 which is lower than the previous version and IPA upgrader refuses to downgrade, resulting in a refusal to start IPA services in a distro-upgrade test. New build is coming.
abbra edited this update.
New build(s):
Removed build(s):
Karma has been reset.
This update's test gating status has been changed to 'waiting'.
This update's test gating status has been changed to 'passed'.
abbra edited this update.
New build(s):
Removed build(s):
Karma has been reset.
Correctly fixes the CVE
This update has been pushed to testing.
Pass tests in ansible-freeipa and fixes CVE.
This update can be pushed to stable now if the maintainer wishes
This update has been submitted for stable by abbra.
This update has been pushed to stable.