Fedora alert FEDORA-2025-c903306aee (salt)
From: | updates--- via package-announce <package-announce@lists.fedoraproject.org> | |
To: | package-announce@lists.fedoraproject.org | |
Subject: | [SECURITY] Fedora 42 Update: salt-3007.5-2.fc42 | |
Date: | Mon, 14 Jul 2025 22:51:49 +0000 | |
Message-ID: | <20250714225149.DEA085C66E@bastion01.rdu3.fedoraproject.org> | |
Archive-link: | Article |
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-c903306aee 2025-07-14 22:50:39.623997+00:00 -------------------------------------------------------------------------------- Name : salt Product : Fedora 42 Version : 3007.5 Release : 2.fc42 URL : https://saltproject.io/ Summary : A parallel remote execution system Description : Salt is a distributed remote execution system used to execute commands and query data. It was developed in order to bring the best solutions found in the world of remote execution together and make them better, faster and more malleable. Salt accomplishes this via its ability to handle larger loads of information, and not just dozens, but hundreds or even thousands of individual servers, handle them quickly and through a simple and manageable interface. -------------------------------------------------------------------------------- Update Information: Contains fixes for regressions introduced during CVE bugfix update (3007.4). -------------------------------------------------------------------------------- ChangeLog: * Sat Jul 5 2025 Robby Callicotte <rcallicotte@fedoraproject.org> - 3007.5-1 - Updated to 3007.5 - Resolves RHBZ#2375105 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2372777 - CVE-2025-22238 salt: Directory traversal in salt project [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372777 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-c903306aee' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgr... All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-cond... List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-ann... Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue