Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 42: FEDORA-2025-48e8e5f8ed Apache Commons BeanUtils Access Control

fedora
Calendar Grey June 22, 2025
Dist Fedora Esm H88
Tackling inadequate authorization in apache-commons-beanutils on Fedora 42 through crucial patches to strengthen defenses.
Fix improper access control vulnerability Resolves: CVE-2025-48734

Summary

The scope of this package is to create a package of Java utility methods

for accessing and modifying the properties of arbitrary JavaBeans. No

dependencies outside of the JDK are required, so the use of this package

is very lightweight.

Update Information:

Fix improper access control vulnerability Resolves: CVE-2025-48734

Change Log

* Fri Jun 13 2025 Mikolaj Izdebski - 1.9.4-39 - Fix improper access control vulnerability

References


[ 1 ] Bug #2369090 - CVE-2025-48734 apache-commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2369090

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-48e8e5f8ed' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: apache-commons-beanutils
Product: Fedora 42
Version: 1.9.4
Release: 39.fc42
Summary: Java utility methods for accessing and modifying the properties of arbitrary JavaBeans

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here