complyctl leverages OSCAL to perform compliance assessment activities, using
plugins for each stage of the life-cycle.
Update Information:
First minor release of complyctl - a new command line Interface for Fedora compliance assessment. It features a decoupled plug-in architecture for flexibility, and generates standardized, machine-readable data using OSCAL. Complyctl main commands released: list, info, plan, generate and scan. More details: https://github.com/complytime/complyctl/releases/tag/v0.1.0
* Thu Oct 2 2025 Packit
[ 1 ] Bug #2399329 - CVE-2025-47906 complyctl: Unexpected paths returned from LookPath in os/exec [fedora-42]
https://bugzilla.redhat.com/show_bug.cgi?id=2399329
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-ff84d4bc22' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
Get the latest Linux and open source security news straight to your inbox.