[Git][security-tracker-team/security-tracker][master] Add CVE-2025-8732/libxml2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 8 21:25:04 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
46dd2e5c by Salvatore Bonaccorso at 2025-08-08T22:24:44+02:00
Add CVE-2025-8732/libxml2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -20,7 +20,10 @@ CVE-2025-8733 (A vulnerability was found in GNU Bison up to 3.8.2. It has been r
 	NOTE: https://github.com/akimd/bison/issues/113
 	NOTE: https://github.com/akimd/bison/issues/114
 CVE-2025-8732 (A vulnerability was found in libxml2 up to 2.14.5. It has been declare ...)
-	TODO: check
+	- libxml2 <unfixed> (unimportant)
+	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/958
+	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/958#note_2505853
+	NOTE: Issue can only be triggered with untrusted SGML, negligible security impact
 CVE-2025-8731 (A vulnerability was found in TRENDnet TI-G160i, TI-PG102i and TPL-430A ...)
 	NOT-FOR-US: TRENDnet
 CVE-2025-8730 (A vulnerability was found in Belkin F9K1009 and F9K1010 2.00.04/2.00.0 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46dd2e5cd4e0ffdab8f73541fbf084d366f9771d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46dd2e5cd4e0ffdab8f73541fbf084d366f9771d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250808/429ff002/attachment.htm>


More information about the debian-security-tracker-commits mailing list