Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 42: JupyterHub Critical Security Update 2025:0012-2

fedora
Calendar Grey September 13, 2025
Dist Fedora Esm H88
Urgent security patches issued for JupyterLab in Fedora 41 targeting severe cross site scripting flaws. Update immediately!
Security fixes for CVE-2025-54880 and CVE-2025-54881.

Summary

JupyterLab is the next-generation user interface for Project Jupyter

offering all the familiar building blocks of the classic Jupyter

Notebook (notebook, terminal, text editor, file browser, rich outputs, etc.)

in a flexible and powerful user interface.

Update Information:

Security fixes for CVE-2025-54880 and CVE-2025-54881.

Change Log

* Wed Sep 3 2025 Lumir Balhar - 4.4.7-1 - Update to 4.4.7 (rhbz#2392881) * Sun Aug 17 2025 Lumir Balhar - 4.4.6-1 - Update to 4.4.6 (rhbz#2388776) * Fri Aug 15 2025 Python Maint - 4.4.5-2 - Rebuilt for Python 3.14.0rc2 bytecode * Thu Jul 31 2025 Lumir Balhar - 4.4.5-1 - Update to 4.4.5 (rhbz#2382133) * Thu Jul 24 2025 Fedora Release Engineering - 4.4.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild * Sun Jun 29 2025 Lumir Balhar - 4.4.4-1 - Update to 4.4.4 (rhbz#2375330) * Fri Jun 6 2025 Python Maint - 4.4.3-2 - Rebuilt for Python 3.14 * Mon May 26 2025 Lumir Balhar - 4.4.3-1 - Update to 4.4.3 (rhbz#2368575) * Mon May 26 2025 Lumir Balhar - 4.4.2-2 - Use cogapp for generated content * Wed May 7 2025 Lumir Balhar - 4.4.2-1 - Update to 4.4.2 (rhbz#2364417) * Wed Apr 23 2025 Lumir Balhar - 4.4.1-1 - Update to 4.4.1 (rhbz#2361753)

References


[ 1 ] Bug #2389828 - CVE-2025-54881 jupyterlab: Mermaid cross site scripting [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2389828 [ 2 ] Bug #2389829 - CVE-2025-54880 jupyterlab: Mermaid cross site scripting [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2389829

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-bdd1059817' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: jupyterlab
Product: Fedora 41
Version: 4.4.7
Release: 1.fc41
Summary: JupyterLab computational environment

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here