[Git][security-tracker-team/security-tracker][master] Add CVE-2025-8837/jasper

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Aug 11 21:32:03 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
76c45d7a by Salvatore Bonaccorso at 2025-08-11T22:31:43+02:00
Add CVE-2025-8837/jasper

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -39,7 +39,9 @@ CVE-2025-8839 (A vulnerability was found in jshERP up to 3.5. This issue affects
 CVE-2025-8838 (A vulnerability has been found in WinterChenS my-site up to 1f7525f159 ...)
 	NOT-FOR-US: WinterChenS my-site
 CVE-2025-8837 (A vulnerability was identified in JasPer up to 4.2.5. This affects the ...)
-	TODO: check
+	- jasper <removed>
+	NOTE: https://github.com/jasper-software/jasper/issues/402
+	NOTE: https://github.com/jasper-software/jasper/commit/8308060d3fbc1da10353ac8a95c8ea60eba9c25a
 CVE-2025-8672 (MacOS version of GIMP bundles a Python interpreter that inherits the T ...)
 	TODO: check
 CVE-2025-8285 (Mattermost Confluence Plugin version <1.5.0 fails to check the access  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/76c45d7a8c8cea0861ea107f5a4875addb9d31db

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/76c45d7a8c8cea0861ea107f5a4875addb9d31db
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250811/4b6fc39b/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list