Fedora 41 Update: chromium-137.0.7151.119-1.fc41
Fedora 41 Update: dotnet9.0-9.0.107-1.fc41
Fedora 41 Update: apache-commons-beanutils-1.9.4-39.fc41
[SECURITY] Fedora 41 Update: chromium-137.0.7151.119-1.fc41
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-4fed640c91
2025-06-22 01:13:34.506440+00:00
--------------------------------------------------------------------------------
Name : chromium
Product : Fedora 41
Version : 137.0.7151.119
Release : 1.fc41
URL : http://www.chromium.org/Home
Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use
Description :
Chromium is an open-source web browser, powered by WebKit (Blink).
--------------------------------------------------------------------------------
Update Information:
Update to 137.0.7151.119
* CVE-2025-6191: Integer overflow in V8
* CVE-2025-6192: Use after free in Profiler
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 18 2025 Than Ngo [than@redhat.com] - 137.0.7151.119-1
- Update to 137.0.7151.119
* CVE-2025-6191: Integer overflow in V8
* CVE-2025-6192: Use after free in Profiler
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2373778 - CVE-2025-6192 chromium: Chromium use after free [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2373778
[ 2 ] Bug #2373780 - CVE-2025-6191 chromium: Chromium integer overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2373780
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-4fed640c91' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--
[SECURITY] Fedora 41 Update: dotnet9.0-9.0.107-1.fc41
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-092006d075
2025-06-22 01:13:34.506409+00:00
--------------------------------------------------------------------------------
Name : dotnet9.0
Product : Fedora 41
Version : 9.0.107
Release : 1.fc41
URL : https://github.com/dotnet/
Summary : .NET Runtime and SDK
Description :
.NET is a fast, lightweight and modular platform for creating
cross platform applications that work on Linux, macOS and Windows.
It particularly focuses on creating console applications, web
applications and micro-services.
.NET contains a runtime conforming to .NET Standards a set of
framework libraries, an SDK containing compilers and a 'dotnet'
application to drive everything.
--------------------------------------------------------------------------------
Update Information:
This is the .NET monthly update for June 2025.
Release Notes:
SDK: https://github.com/dotnet/core/blob/main/release-notes/9.0/9.0.6/9.0.107.md
Runtime: https://github.com/dotnet/core/blob/main/release-
notes/9.0/9.0.6/9.0.6.md
--------------------------------------------------------------------------------
ChangeLog:
* Tue Jun 10 2025 Omair Majid [omajid@redhat.com] - 9.0.107-1
- Update to .NET SDK 9.0.107 and Runtime 9.0.6
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-092006d075' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--
[SECURITY] Fedora 41 Update: apache-commons-beanutils-1.9.4-39.fc41
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-3eb7c0066f
2025-06-22 01:13:34.506386+00:00
--------------------------------------------------------------------------------
Name : apache-commons-beanutils
Product : Fedora 41
Version : 1.9.4
Release : 39.fc41
URL : https://commons.apache.org/proper/commons-beanutils/
Summary : Java utility methods for accessing and modifying the properties of arbitrary JavaBeans
Description :
The scope of this package is to create a package of Java utility methods
for accessing and modifying the properties of arbitrary JavaBeans. No
dependencies outside of the JDK are required, so the use of this package
is very lightweight.
--------------------------------------------------------------------------------
Update Information:
Fix improper access control vulnerability
Resolves: CVE-2025-48734
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jun 13 2025 Mikolaj Izdebski [mizdebsk@redhat.com] - 1.9.4-39
- Fix improper access control vulnerability
* Thu Jan 16 2025 Fedora Release Engineering [releng@fedoraproject.org] - 1.9.4-38
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
* Mon Jan 13 2025 Mikolaj Izdebski [mizdebsk@redhat.com] - 1.9.4-37
- Update upstream URL
* Fri Nov 29 2024 Mikolaj Izdebski [mizdebsk@redhat.com] - 1.9.4-34
- Update javapackages test plan to f42
* Tue Sep 3 2024 Mikolaj Izdebski [mizdebsk@redhat.com] - 1.9.4-33
- Use %autosetup -C
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2369088 - CVE-2025-48734 apache-commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default [fedora-41]
https://bugzilla.redhat.com/show_bug.cgi?id=2369088
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-3eb7c0066f' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--