Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 42 glow 2025-e023994b32 important: input sanitization fix

fedora
Calendar Grey June 27, 2025
Dist Fedora Esm H88
Addresses major vulnerabilities, specifically CVE-2025-22873, enhancing performance on Ubuntu 24. Make sure to update today for a safer computing environment!
Update to version 2.1.1 for various bugfixes

Summary

Glow is a terminal based markdown reader designed from the ground up to bring

out the beauty—and power—of the CLI. Use it to discover markdown files, read

documentation directly on the command line. Glow will find local markdown

files in subdirectories or a local Git repository.

Update Information:

Update to version 2.1.1 for various bugfixes. This also fixes CVE-2025-22872 in the bundled golang.org/x/net/html.

Change Log

* Wed Jun 18 2025 Carl George - 2.1.1-1 - Update to version 2.1.1 rhbz#2369460

References


[ 1 ] Bug #2360634 - CVE-2025-22872 glow: Incorrect Neutralization of Input During Web Page Generation in x/net in golang.org/x/net [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2360634 [ 2 ] Bug #2369460 - glow-2.1.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2369460

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-e023994b32' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: glow
Product: Fedora 42
Version: 2.1.1
Release: 1.fc42
Summary: Terminal based markdown reader

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here