[Git][security-tracker-team/security-tracker][master] Add CVE-2025-52887/cpp-httplib

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 26 22:53:12 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5010a2c2 by Salvatore Bonaccorso at 2025-06-26T23:51:26+02:00
Add CVE-2025-52887/cpp-httplib

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -73,7 +73,10 @@ CVE-2025-52902 (File Browser provides a file managing interface within a specifi
 CVE-2025-52900 (File Browser provides a file managing interface within a specified dir ...)
 	TODO: check
 CVE-2025-52887 (cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTT ...)
-	TODO: check
+	- cpp-httplib <unfixed>
+	NOTE: https://github.com/yhirose/cpp-httplib/security/advisories/GHSA-xjhg-gf59-p92h
+	NOTE: https://github.com/yhirose/cpp-httplib/commit/28dcf379e82a2cdb544d812696a7fd46067eb7f9 (v0.22.0)
+	TODO: double check if only affects 0.21.0 version
 CVE-2025-52573 (iOS Simulator MCP Server (ios-simulator-mcp) is a Model Context Protoc ...)
 	NOT-FOR-US: iOS Simulator MCP Server (ios-simulator-mcp)
 CVE-2025-52477 (Octo-STS is a GitHub App that acts like a Security Token Service (STS) ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5010a2c291746dd20c99f1ccfaaf8fd4ce044b02

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5010a2c291746dd20c99f1ccfaaf8fd4ce044b02
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250626/8c878351/attachment.htm>


More information about the debian-security-tracker-commits mailing list