Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 41: FEDORA-2025-cd51e0177b moderate: yq command-line processor

fedora
Calendar Grey February 4, 2025
Dist Fedora Esm H88
The recent Fedora 41 update for yq resolves concerns regarding CVE-2024-45338. Ensure you upgrade to the latest secure release today.
Rebuilt against golang-x-net 0.33.0 for CVE-2024-45338

Summary

Yq is a portable command-line YAML, JSON, XML, CSV, TOML and properties

processor.

Update Information:

Rebuilt against golang-x-net 0.33.0 for CVE-2024-45338

Change Log

* Sun Jan 26 2025 Michel Lind - 4.43.1-5 - Fix building with Go 1.24; Resolves: RHBZ#2341595 * Sun Jan 19 2025 Fedora Release Engineering - 4.43.1-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

References


[ 1 ] Bug #2333265 - CVE-2024-45338 yq: Non-linear parsing of case-insensitive content in golang.org/x/net/html [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2333265

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-cd51e0177b' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: yq
Product: Fedora 41
Version: 4.43.1
Release: 5.fc41
Summary: Yq is a portable command-line YAML, JSON, XML, CSV, TOML and properties processor

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here