Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 43: ov 0.50.2 Critical Memory Exhaustion and Data Leak Alert

fedora
Calendar Grey December 26, 2025
Dist Fedora Esm H88
Critical updates for Fedora 43's ov 0.50.2 address multiple issues such as memory exhaustion and data exposure risks.
Update to 0.50.2

Summary

Feature-rich terminal-based text viewer. It is a so-called terminal pager.

Update Information:

Update to 0.50.2

Change Log

* Wed Dec 17 2025 Mikel Olasagasti Uranga - 0.50.2-1 - Update to 0.50.2 - Closes rhbz#2397069 * Fri Oct 10 2025 Maxwell G - 0.43.0-3 - Rebuild for golang 1.25.2 * Fri Oct 10 2025 Alejandro Sez - 0.43.0-2 - rebuild

References


[ 1 ] Bug #2408337 - CVE-2025-58189 ov: go crypto/tls ALPN negotiation error contains attacker controlled information [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2408337 [ 2 ] Bug #2409810 - CVE-2025-61723 ov: Quadratic complexity when parsing some invalid inputs in encoding/pem [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2409810 [ 3 ] Bug #2410760 - CVE-2025-58185 ov: Parsing DER payload can cause memory exhaustion in encoding/asn1 [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2410760 [ 4 ] Bug #2411656 - CVE-2025-58188 ov: Panic when validating certificates with DSA public keys in crypto/x509 [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2411656

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-0d2748fa32' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: ov
Product: Fedora 43
Version: 0.50.2
Release: 1.fc43
Summary: Feature-rich terminal-based text viewer

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here