stable

openqa-5^20250711git28a0214-4.fc42

FEDORA-2026-84de1534b1 created by adamwill 8 months ago for Fedora 42

This update bumps the bundled lodash to 4.17.23 to ensure openQA is protected against CVE-2025-13465. It likely was not vulnerable in any case, though, as I don't believe the vulnerable codepaths were exposed by openQA's use of lodash.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2026-84de1534b1

This update has been submitted for testing by adamwill.

8 months ago

This update's test gating status has been changed to 'ignored'.

8 months ago

This update has been pushed to testing.

8 months ago

This update has been submitted for stable by bodhi.

7 months ago

This update has been pushed to stable.

7 months ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
2
Stable by Time
7 days
Dates
submitted
8 months ago
in testing
8 months ago
in stable
7 months ago
approved
7 months ago
BZ#2432984 CVE-2025-13465 openqa: prototype pollution in _.unset and _.omit functions [fedora-42]
0
0

Automated Test Results