Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 43: Critical Vulnerabilities in golang-github-openprinting-ipp-usb

fedora
Calendar Grey November 6, 2025
Dist Fedora Esm H88
Critical update available for golang-github-openprinting-ipp-usb in Fedora 43. Focus on exploiting vulnerabilities in encoding.
Rebuild with the latest golang in repos

Summary

HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables

driverless support for USB devices capable of using IPP-over-USB protocol.

Update Information:

Rebuild with the latest golang in repos

Change Log

* Fri Oct 31 2025 Zdenek Dohnal - 0.9.30-7 - Rebuild with the latest golang in repos * Fri Oct 10 2025 Maxwell G - 0.9.30-6 - Rebuild for golang 1.25.2

References


[ 1 ] Bug #2407251 - CVE-2025-58185 encoding/asn1: Parsing DER payload can cause memory exhaustion in encoding/asn1 https://bugzilla.redhat.com/show_bug.cgi?id=2407251 [ 2 ] Bug #2407252 - CVE-2025-61723 encoding/pem: Quadratic complexity when parsing some invalid inputs in encoding/pem https://bugzilla.redhat.com/show_bug.cgi?id=2407252 [ 3 ] Bug #2407260 - CVE-2025-58189 crypto/tls: go crypto/tls ALPN negotiation error contains attacker controlled information https://bugzilla.redhat.com/show_bug.cgi?id=2407260

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-46b6a955b3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: golang-github-openprinting-ipp-usb
Product: Fedora 43
Version: 0.9.30
Release: 7.fc43
Summary: HTTP reverse proxy, backed by IPP-over-USB connection to device

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here