[Git][security-tracker-team/security-tracker][master] dla/sqlite3: update notes

Paride Legovini (@paride) paride at debian.org
Sun Aug 17 22:19:42 BST 2025



Paride Legovini pushed to branch master at Debian Security Tracker / security-tracker


Commits:
491ad417 by Paride Legovini at 2025-08-17T23:19:18+02:00
dla/sqlite3: update notes

- - - - -


1 changed file:

- data/dla-needed.txt


Changes:

=====================================
data/dla-needed.txt
=====================================
@@ -375,6 +375,11 @@ sogo
 sqlite3 (paride)
   NOTE: 20250805: Added by Front-Desk (rouca)
   NOTE: 20250805: CVE-2025-7458/leak should be fixed, maybe other postponed issue (rouca)
+  NOTE: 20250817: CVE-2025-7458 the CVE description mentions 3.39.2 as the first affected
+  NOTE: 20250817: version. This would mean that bullseye is not affected, as the packaged
+  NOTE: 20250817: version is 3.34.1. I am verifying that the vulnerability _actually_ got
+  NOTE: 20250817: introduced in 3.39.2. (paride)
+
 --
 squid (rouca)
   NOTE: 20250805: Added by Front-Desk (rouca)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/491ad417d33f27a9dc2dd023cb9dad4efd476718

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/491ad417d33f27a9dc2dd023cb9dad4efd476718
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250817/df8cc736/attachment.htm>


More information about the debian-security-tracker-commits mailing list