Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Fedora 42 python-watchfiles: 2025-e6c12e820e critical double free fix

fedora
Calendar Grey May 23, 2025
Dist Fedora Esm H88
Notice for python-watchfiles resolved CVE-2025-4574 in Fedora 42, tackling significant security vulnerability.
Security fix for CVE-2025-4574 (fix RHBZ#2366569) The package was rebuilt with rust-crossbeam-channel 0.5.15.

Summary

Simple, modern and high performance file watching and code reload in python.

Underlying file system notifications are handled by the Notify rust library.

Update Information:

Security fix for CVE-2025-4574 (fix RHBZ#2366569) The package was rebuilt with rust-crossbeam-channel 0.5.15.

Change Log

* Thu May 15 2025 Benjamin A. Beasley - 1.0.4-5 - Security fix for CVE-2025-4574 (fix RHBZ#2366569) - The package was rebuilt with rust-crossbeam-channel 0.5.15. * Thu May 15 2025 Benjamin A. Beasley - 1.0.4-4 - Assert that .dist-info contains license files

References


[ 1 ] Bug #2366569 - CVE-2025-4574 python-watchfiles: crossbeam-channel Vulnerable to Double Free on Drop [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2366569

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-e6c12e820e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python-watchfiles
Product: Fedora 42
Version: 1.0.4
Release: 5.fc42
Summary: Simple, modern and high performance file watching and code reload in python

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here