stable

apptainer-1.4.4-1.fc42

FEDORA-2025-ee38edca98 created by dwd 5 months ago for Fedora 42

Update to upstream 1.4.4.

This was built with golang-1.24.9 so it addresses CVE-2025-61723, CVE-2025-61725, CVE-2025-58183, CVE-2025-58185, CVE-2025-58188, and CVE-2025-58189.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2025-ee38edca98

This update has been submitted for testing by dwd.

5 months ago

This update's test gating status has been changed to 'ignored'.

5 months ago

This update has been pushed to testing.

5 months ago

dwd edited this update.

4 months ago

dwd edited this update.

4 months ago

dwd edited this update.

4 months ago

dwd edited this update.

4 months ago

dwd edited this update.

4 months ago

dwd edited this update.

4 months ago

This update has been submitted for stable by bodhi.

4 months ago

mattia edited this update.

4 months ago

mattia edited this update.

4 months ago

dwd edited this update.

4 months ago

This update has been pushed to stable.

4 months ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
7 days
Dates
submitted
5 months ago
in testing
5 months ago
in stable
4 months ago
modified
4 months ago
approved
4 months ago
BZ#2407844 CVE-2025-58189 apptainer: go crypto/tls ALPN negotiation error contains attacker controlled information [fedora-42]
0
0
BZ#2408628 CVE-2025-61725 apptainer: Excessive CPU consumption in ParseAddress in net/mail [fedora-42]
0
0
BZ#2409311 CVE-2025-61723 apptainer: Quadratic complexity when parsing some invalid inputs in encoding/pem [fedora-42]
0
0
BZ#2410263 CVE-2025-58185 apptainer: Parsing DER payload can cause memory exhaustion in encoding/asn1 [fedora-42]
0
0
BZ#2411175 CVE-2025-58188 apptainer: Panic when validating certificates with DSA public keys in crypto/x509 [fedora-42]
0
0
BZ#2412744 CVE-2025-58183 apptainer: Unbounded allocation when parsing GNU sparse map [fedora-42]
0
0

Automated Test Results