Skip to content
Fedora 41 Applies Critical Security Patch for NextCloud 32.0.3 Update

Fedora 41 Applies Critical Security Patch for NextCloud 32.0.3 Update

Linuxsecurity •LinuxSecurity Advisories • December 3, 2025

NextCloud gives you universal access to your files through a web interface or WebDAV. It also provides a platform to easily view & sync your contacts, calendars and bookmarks across all your devices and enables basic editing right on the web. NextCloud is extendable via a simple but powerful API for applications and plugins. Update Information : 32.0.2 release RHBZ#2416087 RHBZ#2415750 RHBZ#2415751 RHBZ#2415752 RHBZ#2415753

NextCloud gives you universal access to your files through a web interface or

WebDAV. It also provides a platform to easily view & sync your contacts,

calendars and bookmarks across all your devices and enables basic editing right

on the web. NextCloud is extendable via a simple but powerful API for

applications and plugins.

32.0.2 release RHBZ#2416087 RHBZ#2415750 RHBZ#2415751 RHBZ#2415752 RHBZ#2415753

* Mon Nov 24 2025 Andrew Bauer - 32.0.2-1 - 32.0.2 release RHBZ#2416087 RHBZ#2415750 RHBZ#2415751 RHBZ#2415752 RHBZ#2415753 * Sat Oct 25 2025 Andrew Bauer - 32.0.1-1 - 32.0.1 release RHBZ#2399899

* Mon Nov 24 2025 Andrew Bauer - 32.0.2-1 - 32.0.2 release RHBZ#2416087 RHBZ#2415750 RHBZ#2415751 RHBZ#2415752 RHBZ#2415753 * Sat Oct 25 2025 Andrew Bauer - 32.0.1-1 - 32.0.1 release RHBZ#2399899

[ 1 ] Bug #2415750 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [epel-10] [ 2 ] Bug #2415751 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [fedora-41] [ 3 ] Bug #2415752 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [fedora-42] [ 4 ] Bug #2415753 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [fedora-43] [ 5 ] Bug #2416087 - nextcloud-32.0.2 is available

[ 1 ] Bug #2415750 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [epel-10] [ 2 ] Bug #2415751 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [fedora-41] [ 3 ] Bug #2415752 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [fedora-42] [ 4 ] Bug #2415753 - CVE-2025-64500 nextcloud: Symfony HttpFoundation: Limited authorization bypass [fedora-43] [ 5 ] Bug #2416087 - nextcloud-32.0.2 is available

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-bb6c04e3ee' at the command line. For more information, refer to the dnf documentation available at

Extracted Entities

Companies (1)

Platforms (2)