Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 42: ov Critical Info Leak Fixed in 0.50.2 FEDORA-2025-9ded4c3651

fedora
Calendar Grey December 26, 2025
Dist Fedora Esm H88
Update to OV 0.50.2 on Fedora 42 addresses critical bugs and improves terminal viewer security features.
Update to 0.50.2

Summary

Feature-rich terminal-based text viewer. It is a so-called terminal pager.

Update Information:

Update to 0.50.2

Change Log

* Wed Dec 17 2025 Mikel Olasagasti Uranga - 0.50.2-1 - Update to 0.50.2 - Closes rhbz#2397069 * Fri Oct 10 2025 Maxwell G - 0.43.0-3 - Rebuild for golang 1.25.2 * Fri Oct 10 2025 Alejandro Sez - 0.43.0-2 - rebuild

References


[ 1 ] Bug #2384165 - ov: go-viper information leak [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2384165 [ 2 ] Bug #2390879 - ov: go-viper's mapstructure May Leak Sensitive Information in Logs [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2390879 [ 3 ] Bug #2391668 - CVE-2025-58058 ov: github.com/ulikunitz/xz leaks memory [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2391668 [ 4 ] Bug #2398872 - CVE-2025-47910 ov: CrossOriginProtection bypass in net/http [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2398872 [ 5 ] Bug #2399549 - CVE-2025-47906 ov: Unexpected paths returned from LookPath in os/exec [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2399549 [ 6 ] Bug #2408082 - CVE-2025-58189 ov: go crypto/tls ALPN negotiation error contains attacker controlled information [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2408082 [ 7 ] Bug #2409552 - CVE-2025-61723 ov: Quadr...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-9ded4c3651' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: ov
Product: Fedora 42
Version: 0.50.2
Release: 1.fc42
Summary: Feature-rich terminal-based text viewer

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here