Alerts This Week
Warning Icon 1 774
Alerts This Week
Warning Icon 1 774

Ubuntu 22: python-pycryptodome High Memory Leak Issue 2025-2db54ef2a

fedora
Calendar Grey October 15, 2025
Dist Fedora Esm H88
Fedora 42 security advisory for rust-maxminddb updates addressing critical issues like uncontrolled recursion vulnerabilities.
Update mirrorlist-server to version 3.0.8

Summary

Library for reading MaxMind DB format used by GeoIP2 and GeoLite2.

Update Information:

Update mirrorlist-server to version 3.0.8. Update the maxminddb crate to version 0.26.0. Update the prometheus crate to version 0.14.0. Update the protobuf and protobuf-codegen crates to version 3.7.2. Initial packaging of the protobuf-parse and protobuf-support crates. This includes fixes for CVE-2025-53605 (Uncontrolled Recursion Vulnerability in the protobuf crate).

Change Log

* Tue Sep 30 2025 Fabio Valentini - 0.26.0-1 - Update to version 0.26.0; Fixes RHBZ#2257537 * Fri Jul 25 2025 Fedora Release Engineering - 0.23.0-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild

References


[ 1 ] Bug #2376751 - CVE-2025-53605 mirrorlist-server: Protobuf: Uncontrolled Recursion Vulnerability [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2376751

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-1ac08db27d' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: rust-maxminddb
Product: Fedora 42
Version: 0.26.0
Release: 1.fc42
Summary: Library for reading MaxMind DB format used by GeoIP2 and GeoLite2

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here