Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 41: python-notebook 2025-e15a193ad3 critical: Cross-site scripting

fedora
Calendar Grey April 21, 2025
Dist Fedora Esm H88
Important patch for Fedora 41 python-notebook resolving cross-site scripting vulnerability. Use dnf for installation.
New jupyterlab and notebook

Summary

The Jupyter Notebook is a web application that allows you to create and

share documents that contain live code, equations, visualizations, and

explanatory text. The Notebook has support for multiple programming

languages, sharing, and interactive widgets.

Update Information:

New jupyterlab and notebook

Change Log

* Wed Apr 9 2025 Lumir Balhar - 7.4.0-1 - Update to 7.4.0 (rhbz#2358684) * Wed Mar 26 2025 Lumir Balhar - 7.3.3-1 - Update to 7.3.3 (rhbz#2352574) * Sat Jan 18 2025 Fedora Release Engineering - 7.3.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild * Mon Jan 6 2025 Lumir Balhar - 7.3.2-1 - Update to 7.3.2 (rhbz#2333637)

References


[ 1 ] Bug #2355673 - CVE-2025-27793 jupyterlab: Vega vulnerable to Cross-site Scripting via RegExp.prototype[@@replace] [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2355673 [ 2 ] Bug #2357242 - jupyterlab-4.4.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2357242 [ 3 ] Bug #2358684 - python-notebook-7.4.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2358684

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-e15a193ad3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-notebook
Product: Fedora 41
Version: 7.4.0
Release: 1.fc41
Summary: A web-based notebook environment for interactive computing

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here