ELBA-2025-31405

ELBA-2025-31405 - vaultwarden Bug Fix update

Type:BUG
Severity:NA
Release Date:2025-02-16

Description


[1.33.2-1]
- update to 1.33.2 rhbz#2343535
Fix CVE-2025-0977 ssl::select_next_proto use after free rhbz#2344558

[1.33.0-1]
- update to 1.33.0 rhbz#2342073
Fix GHSA-f7r5-w49x-gxm3 Getting access to the Admin Panel via CSRF
Fix CVE-2025-24364 RCE in the admin panel
Fix CVE-2025-24365 escalation of privilege via variable confusion in OrgHeaders trait

[1.32.7-4]
- Set VW_VERSION env var during build and install rhbz#2338534

[1.32.7-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

[1.32.7-2]
- fix build on el9 with rust 1.79

[1.32.7-1]
- update to 1.32.7 rhbz#2322181
- Fix CVE-2024-56335

[1.32.2-1]
- update to 1.32.2 rhbz#2316657

[1.32.0-1]
- update to 1.32.0 rhbz#2304045
Resolves CVE-2024-39924
Resolves CVE-2024-39925
Resolves CVE-2024-39926

[1.31.0-2]
- Exclude s390x and ppc64le

[1.31.0-1]
- update to 1.31.0 rhbz#2297149

[1.30.5-1]
- Initial package build rhbz#2282807




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (x86_64) vaultwarden-1.33.2-1.el9.src.rpm8be7c9656e4ea600e91210c6917157d0-ol9_x86_64_developer_EPEL
vaultwarden-1.33.2-1.el9.x86_64.rpmf47d24673d9542c2b61da43a104885a0-ol9_x86_64_developer_EPEL


This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections:

software.hardware.complete