Bug 2373771
Summary: | CVE-2025-22872 glow: Incorrect Neutralization of Input During Web Page Generation in x/net in golang.org/x/net [epel-10] | ||
---|---|---|---|
Product: | [Fedora] Fedora EPEL | Reporter: | Carl George 🤠<carl> |
Component: | glow | Assignee: | Carl George 🤠<carl> |
Status: | ON_QA --- | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | unspecified | ||
Version: | epel10 | CC: | carl, go-sig, mfindra |
Target Milestone: | --- | Keywords: | Security, SecurityTracking |
Target Release: | --- | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | {"flaws": ["38b78ace-3452-400a-a9e0-2ff482542094"]} | ||
Fixed In Version: | Doc Type: | --- | |
Doc Text: | Story Points: | --- | |
Clone Of: | 2360634 | Environment: | |
Last Closed: | Type: | --- | |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 2360404 |
Description
Carl George ðŸ¤
2025-06-18 20:30:22 UTC
FEDORA-EPEL-2025-d1f3c48019 (glow-2.1.1-1.el10_1) has been submitted as an update to Fedora EPEL 10.1. https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-d1f3c48019 FEDORA-EPEL-2025-d1f3c48019 has been pushed to the Fedora EPEL 10.1 testing repository. You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-d1f3c48019 See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates. |