The following Fedora EPEL 9 Security updates need testing:
Age URL
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-70ce865582
fcgi-2.4.0-52.el9
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-5c25fd8e2d
roundcubemail-1.5.10-1.el9
3 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-1994b4dec7
seamonkey-2.53.21-1.el9
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-f9b95079ea
yarnpkg-1.22.22-8.el9
The following builds have been pushed to Fedora EPEL 9 updates-testing
chromium-137.0.7151.68-1.el9
distribution-gpg-keys-1.112-1.el9
fastfetch-2.44.0-1.el9
libeatmydata-131-1.el9
partclone-0.3.37-1.el9
strawberry-1.2.11-1.el9
Details about builds:
================================================================================
chromium-137.0.7151.68-1.el9 (FEDORA-EPEL-2025-770f8ff502)
A WebKit (Blink) powered web browser that Google doesn't want you to use
--------------------------------------------------------------------------------
Update Information:
Update to 137.0.7151.68
CVE-2025-5419: Out of bounds read and write in V8
CVE-2025-5068: Use after free in Blink
--------------------------------------------------------------------------------
ChangeLog:
* Tue Jun 3 2025 Than Ngo <[email protected]> - 137.0.7151.68-1
- Update to 137.0.7151.68
* CVE-2025-5419: Out of bounds read and write in V8
* CVE-2025-5068: Use after free in Blink
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2369919 - CVE-2025-5068 chromium: Chrome Use-After-Free
Vulnerability [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2369919
[ 2 ] Bug #2369920 - CVE-2025-5068 chromium: Chrome Use-After-Free
Vulnerability [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2369920
[ 3 ] Bug #2369921 - CVE-2025-5419 chromium: Chrome Heap Corruption
Vulnerability [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2369921
[ 4 ] Bug #2369922 - CVE-2025-5419 chromium: Chrome Heap Corruption
Vulnerability [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2369922
--------------------------------------------------------------------------------
================================================================================
distribution-gpg-keys-1.112-1.el9 (FEDORA-EPEL-2025-4fc7e38124)
GPG keys of various Linux distributions
--------------------------------------------------------------------------------
Update Information:
Add FreeBSD keys
Fix AlmaLinux name and alphabetical ordering of distros
Add AlmaLinux EPEL AltArch Key
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 5 2025 Neal Gompa <[email protected]> 1.112-1
- Add FreeBSD keys
- Fix AlmaLinux name and alphabetical ordering of distros
- Add AlmaLinux EPEL AltArch Key
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2338147 - distribution-gpg-keys-1.110-1 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2338147
--------------------------------------------------------------------------------
================================================================================
fastfetch-2.44.0-1.el9 (FEDORA-EPEL-2025-9671e91824)
Fast neofetch-like system information tool
--------------------------------------------------------------------------------
Update Information:
update to 2.44.0
--------------------------------------------------------------------------------
ChangeLog:
* Fri May 30 2025 Adam Fidel <[email protected]> - 2.44.0-1
- update to 2.44.0 rhbz#2368161
--------------------------------------------------------------------------------
================================================================================
libeatmydata-131-1.el9 (FEDORA-EPEL-2025-a01f2840bb)
Library and utilities designed to disable fsync and friends
--------------------------------------------------------------------------------
Update Information:
New upstream release
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 4 2025 Stewart Smith <[email protected]> - 131-1
- New upstream release
* Fri Jan 17 2025 Fedora Release Engineering <[email protected]> - 130-13
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
* Mon Jul 29 2024 Miroslav Suchý <[email protected]> - 130-12
- convert license to SPDX
* Thu Jul 18 2024 Fedora Release Engineering <[email protected]> - 130-11
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
* Thu Jan 25 2024 Fedora Release Engineering <[email protected]> - 130-10
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sun Jan 21 2024 Fedora Release Engineering <[email protected]> - 130-9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Thu Jul 20 2023 Fedora Release Engineering <[email protected]> - 130-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
================================================================================
partclone-0.3.37-1.el9 (FEDORA-EPEL-2025-feace00ecd)
Utility to clone and restore a partition
--------------------------------------------------------------------------------
Update Information:
partclone v0.3.37
Fix exFAT dirty output while output is STDOUT
Add some test scripts
--------------------------------------------------------------------------------
ChangeLog:
* Thu Jun 5 2025 Robert Scheck <[email protected]> 0.3.37-1
- Upgrade to 0.3.37 (#2370203)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2370203 - partclone-0.3.37 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2370203
--------------------------------------------------------------------------------
================================================================================
strawberry-1.2.11-1.el9 (FEDORA-EPEL-2025-a5a71d9b42)
Audio player and music collection organizer
--------------------------------------------------------------------------------
Update Information:
Update to version 1.2.11
Upstream changelog:
https://github.com/strawberrymusicplayer/strawberry/releases/tag/1.2.11
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jun 4 2025 Ondrej MosnáÄek <[email protected]> - 1.2.11-1
- Update to version 1.2.11 (fedora#2366660)
--------------------------------------------------------------------------------
--
_______________________________________________
epel-devel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it:
https://pagure.io/fedora-infrastructure/new_issue