[Git][security-tracker-team/security-tracker][master] Add CVE-2025-11266/gdcm

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Dec 13 10:06:35 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4450fc2a by Salvatore Bonaccorso at 2025-12-13T11:06:13+01:00
Add CVE-2025-11266/gdcm

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -238,7 +238,8 @@ CVE-2025-11693 (The Export WP Page to Static HTML & PDF plugin for WordPress is
 CVE-2025-11376 (The Colibri Page Builder plugin for WordPress is vulnerable to Stored  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-11266 (An out-of-bounds write vulnerability exists in the Grassroots DICOM li ...)
-	TODO: check
+	- gdcm <unfixed>
+	NOTE: Fixed by: https://github.com/malaterre/GDCM/commit/5829c95c8ac3afa9a3a3413675e948959c28a789 (v3.2.2)
 CVE-2025-11164 (The Mavix Education theme for WordPress is vulnerable to unauthorized  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-10738 (The URL Shortener Plugin For WordPress plugin for WordPress is vulnera ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4450fc2a1cf1a2deea9171994d934d68ee4d58df

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4450fc2a1cf1a2deea9171994d934d68ee4d58df
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251213/e7f6dc37/attachment.htm>


More information about the debian-security-tracker-commits mailing list