An update that solves one vulnerability and has one errata is now available. . openSUSE Security Update: Security update for onefetch ______________________________________________________________________________ Announcement ID: openSUSE-SU-2025:0356-1 Rating: moderate References: #1230085 #1230686 Cross-References: CVE-2024-45405 CVSS scores: CVE-2024-45405 (SUSE): 5.3 CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:A/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N Affected Products: openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for onefetch fixes the following issues: Update to 0.25.0: New Features: * add language support for Text #1579 * support repos "without source code" #1580 Chores: * improve error handling #1560 Bug Fixes: * remove extra line break in 886d942 - This updates gix-path to 0.10.11 (boo#1230085) Update to 0.24.0: * add language support for Lean #1509 * add language support for Typst #1508 * add language support for Razor #1521 * more idiomatic way to fetch HEAD refs #1515 * more idiomatic way to fetch repository remote URL #1516 * update holyc language logo #1543 * update wiki powershell-snippet #1542 Update to 0.23.1: * Fix version in man page Update to 0.23.0: New Features: * add language support for OpenSCAD #1502 * add language support for Modelica #1262 * add language support for ATS #523 * add language support for CUDA #940 * add missing nerd fonts icons for some languages #1491 Chores: * add Italian translation of README #1435 * add Polish translation of README #1444 * add Czech translation of READEME #1439 * update russian README #1478 * add script to preview/validate Nerd Fonts #1492 * add Powershellsnippet to run onefetch automatically #1453 Update to 2.22.0: New Features: * Add support for nerd font glyphs in languages info #1395 * [onefetch.dev] Add nerdfont iconts to the preview #1411 * Automate publishing crates to crates.io #1364 Bug Fixes: * Show future commit dates without panicking #1389 Chores: * Re-generate the man page with --no-info #1376 * Drop unused shebangs from repo test fixture scripts #1375 - boo#1230686 (CVE-2024-45405): Bump git-path to 0.10.11 Update to 2.21.0: * Add CLI option to force URL format to HTTP instead of SSH #1314 * Add CLI flag to hide token from repository URL #1319 * Make Lua logo more readable on dark terminal #1337 * Fix deadlock in Churn computation #1316 * Exclude bot commits from churn when --no-bots option is used #1335 * [onefetch.dev] switch to dark theme #1297 * RUSTSEC-2024-0320: remove yaml-rust dependency #1309 * Refactor --no-bots CLI option #1340 Update to 2.20.0: * This version marks the completion of the transition from git2 to gitoxide * Add svg language support #1266 * lang: Adding Oz programming language #1280 Update to 2.19.0: New Features: * exclude files from churn #1120 * add odin support #1064 * New language: Arduino #1176 * Right align authorship percentages #1207 * Add Agda to languages.yaml #1216 Bug Fixes: * add a test for negative dates and see how onefetch handles it #1100 Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2025-356=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): onefetch-2.25.0-bp156.2.3.1 References: https://www.suse.com/security/cve/CVE-2024-45405.html https://bugzilla.suse.com/1230085 https://bugzilla.suse.com/1230686 . The latest system patch for onefetch resolves several moderate vulnerabilities with appropriate solutions. Review the implementation details promptly.. onefetch update, security patch, openSUSE advisory, Linux software, CVE-2024-45405. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.