Back Linuxsecurity Fedora 43 os-autoinst Update CVE-2025
The OS-autoinst project aims at providing a means to run fully automated tests. Especially to run tests of basic and low-level operating system components such as bootloader, kernel, installer and upgrade, which can not easily and safely be tested with other automated testing frameworks. However, it can just as well be used to test applications on top of a newly installed OS. Update Information : This update provides new upstream snapshots of openQA and os-autoinst, with various fixes and enhancements. Please see upstream changelogs for details. They also address a CVE by updating a bundled javascript library, though we're fairly sure openQA didn't actually expose the vulnerability anyway.
The OS-autoinst project aims at providing a means to run fully
automated tests. Especially to run tests of basic and low-level
operating system components such as bootloader, kernel, installer and
upgrade, which can not easily and safely be tested with other
automated testing frameworks. However, it can just as well be used to
test applications on top of a newly installed OS.
This update provides new upstream snapshots of openQA and os-autoinst, with various fixes and enhancements. Please see upstream changelogs for details. They also address a CVE by updating a bundled javascript library, though we're fairly sure openQA didn't actually expose the vulnerability anyway.
* Tue Jan 20 2026 Adam Williamson - 5^20260123git72cabd0-1 - Update to latest git, re-sync spec - Drop merged patches * Fri Jan 16 2026 Fedora Release Engineering - 5^20250707gitd55ec72-8 - Rebuilt for * Wed Dec 10 2025 Nicolas Chauvet - 5^20250707gitd55ec72-7 - Rebuilt for OpenCV-4.12
* Tue Jan 20 2026 Adam Williamson - 5^20260123git72cabd0-1 - Update to latest git, re-sync spec - Drop merged patches * Fri Jan 16 2026 Fedora Release Engineering - 5^20250707gitd55ec72-8 - Rebuilt for * Wed Dec 10 2025 Nicolas Chauvet - 5^20250707gitd55ec72-7 - Rebuilt for OpenCV-4.12
[ 1 ] Bug #2433034 - CVE-2025-13465 openqa: prototype pollution in _.unset and _.omit functions [fedora-43]
[ 1 ] Bug #2433034 - CVE-2025-13465 openqa: prototype pollution in _.unset and _.omit functions [fedora-43]
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-abd2d2d60c' at the command line. For more information, refer to the dnf documentation available at
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-abd2d2d60c' at the command line. For more information, refer to the dnf documentation available at
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
