[Git][security-tracker-team/security-tracker][master] CVE-2025-58057/netty

Bastien Roucariès (@rouca) rouca at debian.org
Sun Nov 9 13:36:32 GMT 2025



Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b2027b0d by Bastien Roucariès at 2025-11-09T14:35:51+01:00
CVE-2025-58057/netty

Add commit that fix for 4.1. Same commit comment than for 4.1

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -24348,7 +24348,9 @@ CVE-2025-58064 (CKEditor 5 is a modern JavaScript rich-text editor with an MVC a
 CVE-2025-58057 (Netty is an asynchronous event-driven network application framework fo ...)
 	- netty <unfixed> (bug #1113994)
 	NOTE: https://github.com/netty/netty/security/advisories/GHSA-3p8m-j85q-pgmj
-	NOTE: https://github.com/netty/netty/commit/9d804c54ce962408ae6418255a83a13924f7145d (netty-4.2.5.Final)
+	NOTE: https://github.com/netty/netty/pull/15612
+	NOTE: Fixed by: https://github.com/netty/netty/commit/9d804c54ce962408ae6418255a83a13924f7145d (netty-4.2.5.Final)
+	NOTE: Fixed by: https://github.com/netty/netty/commit/34894ac73b02efefeacd9c0972780b32dc3de04f (netty-4.1.125.Final)
 CVE-2025-58056 (Netty is an asynchronous event-driven network application framework fo ...)
 	- netty <unfixed> (bug #1113995)
 	NOTE: https://github.com/netty/netty/security/advisories/GHSA-fghv-69vj-qj49



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b2027b0d0ac286f09179a7aa4e7152e93f56cae2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b2027b0d0ac286f09179a7aa4e7152e93f56cae2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251109/767832ad/attachment.htm>


More information about the debian-security-tracker-commits mailing list