Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 42: fvwm3 Critical CVE-2025-47906 Window Manager Update

fedora
Calendar Grey November 18, 2025
Dist Fedora Esm H88
This advisory details CVE-2025-47906 associated with FVWM3 on Fedora 42, addressing path vulnerabilities.
FVWM3 ver

Summary

Fvwm is a window manager for X11. It is designed to minimize memory

consumption, provide a 3D look to window frames, and implement a virtual

desktop.

Update Information:

FVWM3 ver. 1.1.4

Change Log

* Sun Nov 9 2025 Peter Lemenkov - 1.1.4-1 - FVWM3 ver. 1.1.4 * Fri Oct 10 2025 Maxwell G - 1.1.3-6 - Rebuild for golang 1.25.2 * Fri Aug 15 2025 Maxwell G - 1.1.3-5 - Rebuild for golang-1.25.0 * Fri Aug 15 2025 Maxwell G - 1.1.3-4 - Revert "Rebuild for golang-1.25.0" * Fri Aug 15 2025 Maxwell G - 1.1.3-3 - Rebuild for golang-1.25.0 * Wed Jul 23 2025 Fedora Release Engineering - 1.1.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild

References


[ 1 ] Bug #2399091 - CVE-2025-47906 fvwm3: Unexpected paths returned from LookPath in os/exec [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2399091 [ 2 ] Bug #2399366 - CVE-2025-47906 fvwm3: Unexpected paths returned from LookPath in os/exec [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2399366 [ 3 ] Bug #2413611 - fvwm3-1.1.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2413611

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-f7d7958683' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: fvwm3
Product: Fedora 42
Version: 1.1.4
Release: 1.fc42
Summary: Highly configurable multiple virtual desktop window manager

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here