Skip to content
Fedora 43 os-autoinst Update CVE-2025

Fedora 43 os-autoinst Update CVE-2025

Linuxsecurity LinuxSecurity Advisories February 4, 2026

The OS-autoinst project aims at providing a means to run fully automated tests. Especially to run tests of basic and low-level operating system components such as bootloader, kernel, installer and upgrade, which can not easily and safely be tested with other automated testing frameworks. However, it can just as well be used to test applications on top of a newly installed OS. Update Information : This update provides new upstream snapshots of openQA and os-autoinst, with various fixes and enhancements. Please see upstream changelogs for details. They also address a CVE by updating a bundled javascript library, though we're fairly sure openQA didn't actually expose the vulnerability anyway.

The OS-autoinst project aims at providing a means to run fully

automated tests. Especially to run tests of basic and low-level

operating system components such as bootloader, kernel, installer and

upgrade, which can not easily and safely be tested with other

automated testing frameworks. However, it can just as well be used to

test applications on top of a newly installed OS.

This update provides new upstream snapshots of openQA and os-autoinst, with various fixes and enhancements. Please see upstream changelogs for details. They also address a CVE by updating a bundled javascript library, though we're fairly sure openQA didn't actually expose the vulnerability anyway.

* Tue Jan 20 2026 Adam Williamson - 5^20260123git72cabd0-1 - Update to latest git, re-sync spec - Drop merged patches * Fri Jan 16 2026 Fedora Release Engineering - 5^20250707gitd55ec72-8 - Rebuilt for * Wed Dec 10 2025 Nicolas Chauvet - 5^20250707gitd55ec72-7 - Rebuilt for OpenCV-4.12

* Tue Jan 20 2026 Adam Williamson - 5^20260123git72cabd0-1 - Update to latest git, re-sync spec - Drop merged patches * Fri Jan 16 2026 Fedora Release Engineering - 5^20250707gitd55ec72-8 - Rebuilt for * Wed Dec 10 2025 Nicolas Chauvet - 5^20250707gitd55ec72-7 - Rebuilt for OpenCV-4.12

[ 1 ] Bug #2433034 - CVE-2025-13465 openqa: prototype pollution in _.unset and _.omit functions [fedora-43]

[ 1 ] Bug #2433034 - CVE-2025-13465 openqa: prototype pollution in _.unset and _.omit functions [fedora-43]

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-abd2d2d60c' at the command line. For more information, refer to the dnf documentation available at

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-abd2d2d60c' at the command line. For more information, refer to the dnf documentation available at

Extracted Entities

Vulnerabilities (1)