Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 43: gh 2.83.2 Security Issues Advisory 2025-c6b2100f44

fedora
Calendar Grey January 2, 2026
Dist Fedora Esm H88
Fedora 43 update for gh 2.83.2 addresses multiple security issues with recommended actions.
Update to 2.83.2

Summary

A command-line interface to GitHub for use in your terminal or your scripts.

gh is a tool designed to enhance your workflow when working with GitHub. It

provides a seamless way to interact with GitHub repositories and perform various

actions right from the command line, eliminating the need to switch between your

terminal and the GitHub website.

Update Information:

Update to 2.83.2

Change Log

* Wed Dec 10 2025 Packit - 2.83.2-1 - Update to 2.83.2 upstream release - Resolves: rhbz#2414900

References


[ 1 ] Bug #2409639 - CVE-2025-61723 gh: Quadratic complexity when parsing some invalid inputs in encoding/pem [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2409639 [ 2 ] Bug #2410590 - CVE-2025-58185 gh: Parsing DER payload can cause memory exhaustion in encoding/asn1 [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2410590 [ 3 ] Bug #2411488 - CVE-2025-58188 gh: Panic when validating certificates with DSA public keys in crypto/x509 [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2411488 [ 4 ] Bug #2412688 - CVE-2025-58183 gh: Unbounded allocation when parsing GNU sparse map [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2412688

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-c6b2100f44' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: gh
Product: Fedora 43
Version: 2.83.2
Release: 1.fc43
Summary: GitHub's official command line tool

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here