Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 43: duc Critical Fix for Stack Overflow CVE-2025-13654

fedora
Calendar Grey December 28, 2025
Dist Fedora Esm H88
Fixes CVE-2025-13654 with critical stack overflow vulnerability patch in duc for Fedora 43.
Update to 1.4.6: fixes CVE-2025-13654

Summary

Duc is a collection of tools for indexing, inspecting and visualizing

disk usage. Duc maintains a database of accumulated sizes of directories

of the file system, and allows you to query this database with some tools,

or create fancy graphs showing you where your bytes are.

Update Information:

Update to 1.4.6: fixes CVE-2025-13654

Change Log

* Wed Dec 17 2025 Jens Petersen - 1.4.6-1 - Update to 1.4.6: fixes CVE-2025-13654

References


[ 1 ] Bug #2423080 - CVE-2025-13654 duc: duc: Stack Buffer Overflow in buffer_get function [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2423080

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-4d1c51d90a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: duc
Product: Fedora 43
Version: 1.4.6
Release: 1.fc43
Summary: Disk usage tools

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here