Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Ubuntu 23: golang-github-google-wire Critical Patch CVE-2025-47906

fedora
Calendar Grey January 1, 2026
Dist Fedora Esm H88
CVE-2025-47906 affects golang-github-google-wire; this advisory details the update procedure for Fedora 42 users.
Rebuilt for CVE-2025-47906

Summary

Wire is a code generation tool that automates connecting components using

dependency injection. Dependencies between components are represented in Wire as

function parameters, encouraging explicit initialization instead of global

variables. Because Wire operates without runtime state or reflection, code

written to be used with Wire is useful even for hand-written initialization.

Update Information:

Rebuilt for CVE-2025-47906

Change Log

* Tue Dec 23 2025 W. Michael Petullo - 0.6.0-14 - Rebuilt for CVE-2025-47906

References


[ 1 ] Bug #2399416 - CVE-2025-47906 golang-github-google-wire: Unexpected paths returned from LookPath in os/exec [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2399416

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-f8e5522ee0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: golang-github-google-wire
Product: Fedora 42
Version: 0.6.0
Release: 14.fc42
Summary: Compile-time Dependency Injection for Go

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here