[Git][security-tracker-team/security-tracker][master] Triage CVE-2025-64486 in calibre for bullseye LTS.

Chris Lamb (@lamby) lamby at debian.org
Tue Nov 18 22:59:25 GMT 2025



Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
75575609 by Chris Lamb at 2025-11-18T14:59:10-08:00
Triage CVE-2025-64486 in calibre for bullseye LTS.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3119,6 +3119,7 @@ CVE-2025-64486 (calibre is an e-book manager. In versions 8.13.0 and prior, cali
 	- calibre 8.14.0+ds+~0.10.5-1
 	[trixie] - calibre <no-dsa> (Will be fixed via point update)
 	[bookworm] - calibre <no-dsa> (Will be fixed via point update)
+	[bullseye] - calibre <postponed> (Minor issue; fix after bookworm)
 	NOTE: https://github.com/kovidgoyal/calibre/security/advisories/GHSA-hpwq-c98h-xp8g
 	NOTE: Fixed by: https://github.com/kovidgoyal/calibre/commit/6f94bce214bf7d43c829804db3741afa5e83c0c5 (v8.14.0)
 CVE-2025-64485 (CVAT is an open source interactive video and image annotation tool for ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7557560933af1a0b497216f60d5ed8a709396404

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7557560933af1a0b497216f60d5ed8a709396404
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251118/59157981/attachment.htm>


More information about the debian-security-tracker-commits mailing list