[Git][security-tracker-team/security-tracker][master] Update status for CVE-2025-48074

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 2 08:06:19 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
554a923f by Salvatore Bonaccorso at 2025-08-02T09:05:51+02:00
Update status for CVE-2025-48074

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -83,7 +83,7 @@ CVE-2025-49832 (Asterisk is an open source private branch exchange and telephony
 CVE-2025-48074 (OpenEXR provides the specification and reference implementation of the ...)
 	- openexr <unfixed>
 	NOTE: https://github.com/AcademySoftwareFoundation/openexr/security/advisories/GHSA-x22w-82jp-8rvf
-	TODO: check details details
+	NOTE: https://github.com/AcademySoftwareFoundation/openexr/commit/501be087faa62d0fb7115ce3a0ebd7b4ef0117fc (v3.3.3-rc)
 CVE-2025-46018 (CSC Pay Mobile App 2.19.4 (fixed in version 2.20.0) contains a vulnera ...)
 	NOT-FOR-US: CSC Pay Mobile App
 CVE-2025-45778 (A stored cross-site scripting (XSS) vulnerability in The Language Slot ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/554a923f72f961e57fa74a20d16bfd76fb6298ab

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/554a923f72f961e57fa74a20d16bfd76fb6298ab
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250802/8ba5803c/attachment.htm>


More information about the debian-security-tracker-commits mailing list