Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Fedora 41 FEDORA-2025-0620fdebb6 critical: rclone non-linear parsing

fedora
Calendar Grey January 14, 2025
Scroller Fedora
Rclone vulnerabilities found in Fedora 41 demand swift action to maintain system security. Follow these steps to upgrade and ensure protection against threats
Fix for CVE-2024-52522 & CVE-2024-45338

Summary

Rclone is a command line program to sync files and directories to and

from various cloud services.

Update Information:

Fix for CVE-2024-52522 & CVE-2024-45338

Change Log

* Sat Jan 4 2025 Mikel Olasagasti Uranga - 1.68.2-1 - Update to 1.68.2 - Closes rhbz#2311287 rhbz#2326578 rhbz#2333262 rhbz#2333238 rhbz#2331989 rhbz#2331961

References


[ 1 ] Bug #2333262 - CVE-2024-45338 rclone: Non-linear parsing of case-insensitive content in golang.org/x/net/html [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2333262 [ 2 ] Bug #2337196 - rclone needs an update https://bugzilla.redhat.com/show_bug.cgi?id=2337196

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-0620fdebb6' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: rclone
Product: Fedora 41
Version: 1.68.2
Release: 1.fc41
Summary: Rsync for cloud storage

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.