[Git][security-tracker-team/security-tracker][master] Update status for CVE-2025-55014/stardict
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Aug 27 05:52:43 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
02413580 by Salvatore Bonaccorso at 2025-08-27T06:51:47+02:00
Update status for CVE-2025-55014/stardict
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -6760,11 +6760,13 @@ CVE-2025-6204 (An Improper Control of Generation of Code (Code Injection) vulner
CVE-2025-5988 (A flaw was found in the Ansible aap-gateway. Cross-site request forger ...)
NOT-FOR-US: Ansible Automation Platform
CVE-2025-55014 (The YouDao plugin for StarDict, as used in stardict 3.0.7+git20220909+ ...)
- - stardict 3.0.7+git20220909+dfsg-7 (bug #1110370)
+ - stardict 3.0.7+git20220909+dfsg-8 (bug #1110370)
[trixie] - stardict <no-dsa> (Minor issue)
[bookworm] - stardict <no-dsa> (Minor issue)
NOTE: https://www.openwall.com/lists/oss-security/2025/08/04/1
NOTE: https://lists.debian.org/debian-user/2025/08/msg00076.html
+ NOTE: 3.0.7+git20220909+dfsg-8 uploaded to unstable removes the stardict_youdaodict.so
+ NOTE: plugin from stardict-plugin package, consider this version as the fixed version.
CVE-2025-53395 (Paramount Macrium Reflect through 2025-06-26 allows local attackers to ...)
NOT-FOR-US: Paramount Macrium Reflect
CVE-2025-53394 (Paramount Macrium Reflect through 2025-06-26 allows attackers to execu ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/024135804639255961896861b536863ec415be3d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/024135804639255961896861b536863ec415be3d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250827/d25df00c/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list