Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 42 mingw-icu FEDORA-2025-879f3d7695 critical: buffer overflow

fedora
Calendar Grey June 13, 2025
Dist Fedora Esm H88
Implement patch to address severe buffer overflow vulnerability in mingw-icu on Fedora 42, improving protection and application reliability.
Backport fix for CVE-2025-5222.

Summary

ICU is a set of C and C++ libraries that provides robust and

full-featured Unicode and locale support. The library provides calendar

support, conversions for many character sets, language sensitive

collation, date and time formatting, support for many locales, message

catalogs and resources, message formatting, normalization, number and

currency formatting, time zone support, transliteration, and word,

line, and sentence breaking, etc.

Update Information:

Backport fix for CVE-2025-5222.

Change Log

* Wed Jun 4 2025 Sandro Mani - 76.1-3 - Backport patch for CVE-2025-5222

References


[ 1 ] Bug #2368602 - CVE-2025-5222 mingw-icu: Stack buffer overflow in the SRBRoot::addTag function [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2368602 [ 2 ] Bug #2368604 - CVE-2025-5222 mingw-icu: Stack buffer overflow in the SRBRoot::addTag function [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2368604

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-879f3d7695' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: mingw-icu
Product: Fedora 42
Version: 76.1
Release: 3.fc42
Summary: MinGW compilation of International Components for Unicode Tools

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here