Fedora Linux 9209 Published by

Fedora 43 users can now upgrade to version 2.2.1 of GNU Wget2, an advanced file and recursive website downloader that offers improved performance with features like HTTP2 compression and multi-threading. Meanwhile, python-pdfminer has also been updated to version 20251230, which includes a security fix for CVE-2025-64512.

Fedora 43 Update: wget2-2.2.1-1.fc43
Fedora 43 Update: python-pdfminer-20251230-1.fc43




[SECURITY] Fedora 43 Update: wget2-2.2.1-1.fc43


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-de1a91fe79
2026-01-08 01:26:39.511506+00:00
--------------------------------------------------------------------------------

Name : wget2
Product : Fedora 43
Version : 2.2.1
Release : 1.fc43
URL : https://gitlab.com/gnuwget/wget2
Summary : An advanced file and recursive website downloader
Description :
GNU Wget2 is the successor of GNU Wget, a file and recursive website
downloader.

Designed and written from scratch it wraps around libwget, that provides the
basic functions needed by a web client.

Wget2 works multi-threaded and uses many features to allow fast operation.
In many cases Wget2 downloads much faster than Wget1.x due to HTTP2, HTTP
compression, parallel connections and use of If-Modified-Since HTTP header.

--------------------------------------------------------------------------------
Update Information:

New version 2.2.1
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jan 1 2026 LuK1337 [priv.luk@gmail.com] - 2.2.1-1
- New version 2.2.1
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2425777 - CVE-2025-69195 wget2: GNU Wget2: Memory corruption and crash via filename sanitization logic with attacker-controlled URLs [fedora-42]
https://bugzilla.redhat.com/show_bug.cgi?id=2425777
[ 2 ] Bug #2425778 - CVE-2025-69195 wget2: GNU Wget2: Memory corruption and crash via filename sanitization logic with attacker-controlled URLs [fedora-43]
https://bugzilla.redhat.com/show_bug.cgi?id=2425778
[ 3 ] Bug #2425782 - CVE-2025-69194 wget2: Arbitrary File Write via Metalink Path Traversal in GNU Wget2 [fedora-42]
https://bugzilla.redhat.com/show_bug.cgi?id=2425782
[ 4 ] Bug #2425783 - CVE-2025-69194 wget2: Arbitrary File Write via Metalink Path Traversal in GNU Wget2 [fedora-43]
https://bugzilla.redhat.com/show_bug.cgi?id=2425783
[ 5 ] Bug #2426325 - wget2-2.2.1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2426325
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-de1a91fe79' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

--



[SECURITY] Fedora 43 Update: python-pdfminer-20251230-1.fc43


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-e77e051f0c
2026-01-08 01:26:39.511491+00:00
--------------------------------------------------------------------------------

Name : python-pdfminer
Product : Fedora 43
Version : 20251230
Release : 1.fc43
URL : https://github.com/pdfminer/pdfminer.six
Summary : Tool for extracting information from PDF documents
Description :
Pdfminer.six is a community maintained fork of the original PDFMiner. It is a
tool for extracting information from PDF documents. It focuses on getting and
analyzing text data. Pdfminer.six extracts the text from a page directly from
the sourcecode of the PDF. It can also be used to get the exact location, font
or color of the text.

It is built in a modular way such that each component of pdfminer.six can be
replaced easily. You can implement your own interpreter or rendering device
that uses the power of pdfminer.six for other purposes than text analysis.

Check out the full documentation on Read the Docs
( https://pdfminersix.readthedocs.io/).

Features:

??? Written entirely in Python.
??? Parse, analyze, and convert PDF documents.
??? PDF-1.7 specification support. (well, almost).
??? CJK languages and vertical writing scripts support.
??? Various font types (Type1, TrueType, Type3, and CID) support.
??? Support for extracting images (JPG, JBIG2, Bitmaps).
??? Support for various compressions (ASCIIHexDecode, ASCII85Decode, LZWDecode,
FlateDecode, RunLengthDecode, CCITTFaxDecode)
??? Support for RC4 and AES encryption.
??? Support for AcroForm interactive form extraction.
??? Table of contents extraction.
??? Tagged contents extraction.
??? Automatic layout analysis.

--------------------------------------------------------------------------------
Update Information:

Update to 20251230: security fix for CVE-2025-64512
https://github.com/pdfminer/pdfminer.six/blob/20251230/CHANGELOG.md
--------------------------------------------------------------------------------
ChangeLog:

* Wed Dec 31 2025 Benjamin A. Beasley [code@musicinmybrain.net] - 20251230-1
- Update to 20251230; Fixes RHBZ#2426287
- Security fix for CVE-2025-64512
* Tue Dec 30 2025 Benjamin A. Beasley [code@musicinmybrain.net] - 20251229-1
- Update to 20251229 (close RHBZ#2425927)
* Sun Dec 28 2025 Benjamin A. Beasley [code@musicinmybrain.net] - 20251228-1
- Update to 20251228 (close RHBZ#2425643)
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2425643 - python-pdfminer-20251227 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2425643
[ 2 ] Bug #2425927 - python-pdfminer-20251229 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2425927
[ 3 ] Bug #2426287 - python-pdfminer-20251230 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2426287
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-e77e051f0c' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------