[Git][security-tracker-team/security-tracker][master] Triage CVE-2025-64486 in calibre for bullseye LTS.
Chris Lamb (@lamby)
lamby at debian.org
Tue Nov 18 22:59:25 GMT 2025
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker
Commits:
75575609 by Chris Lamb at 2025-11-18T14:59:10-08:00
Triage CVE-2025-64486 in calibre for bullseye LTS.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3119,6 +3119,7 @@ CVE-2025-64486 (calibre is an e-book manager. In versions 8.13.0 and prior, cali
- calibre 8.14.0+ds+~0.10.5-1
[trixie] - calibre <no-dsa> (Will be fixed via point update)
[bookworm] - calibre <no-dsa> (Will be fixed via point update)
+ [bullseye] - calibre <postponed> (Minor issue; fix after bookworm)
NOTE: https://github.com/kovidgoyal/calibre/security/advisories/GHSA-hpwq-c98h-xp8g
NOTE: Fixed by: https://github.com/kovidgoyal/calibre/commit/6f94bce214bf7d43c829804db3741afa5e83c0c5 (v8.14.0)
CVE-2025-64485 (CVAT is an open source interactive video and image annotation tool for ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7557560933af1a0b497216f60d5ed8a709396404
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7557560933af1a0b497216f60d5ed8a709396404
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251118/59157981/attachment.htm>
More information about the debian-security-tracker-commits
mailing list