Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 42 Update: corosync 3.1.9 critical fix for CVE-2025-30472

fedora
Calendar Grey April 11, 2025
Dist Fedora Esm H88
Fedora 42 has issued a vital security update for Corosync, related to CVE-2025-30472, which may let remote attackers execute code or induce a denial of service
Security fix for CVE-2025-30472

Summary

This package contains the Corosync Cluster Engine Executive, several default

APIs and libraries, default configuration files, and an init script.

Update Information:

Security fix for CVE-2025-30472

Change Log

* Wed Mar 26 2025 Jan Friesse - 3.1.9-3 - totemsrp: Check size of orf_token msg (fixes CVE-2025-30472)

References

Fedora Update Notification FEDORA-2025-a350309ddb 2025-04-11 18:19:12.061352+00:00 Name : corosync Product : Fedora 42 Version : 3.1.9 Release : 3.fc42 URL : http://corosync.github.io/corosync/ Summary : The Corosync Cluster Engine and Application Programming Interfaces Description : This package contains the Corosync Cluster Engine Executive, several default APIs and libraries, default configuration files, and an init script.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-a350309ddb' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: corosync
Product: Fedora 42
Version: 3.1.9
Release: 3.fc42
Summary: The Corosync Cluster Engine and Application Programming Interfaces

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here