[Git][security-tracker-team/security-tracker][master] Revert "Add fixed version for CVE-2025-9714/libxml2.9"

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Oct 20 16:35:47 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
28eabc7b by Salvatore Bonaccorso at 2025-10-20T17:34:45+02:00
Revert "Add fixed version for CVE-2025-9714/libxml2.9"

This reverts commit 445199b25b2548f4221eb098e4f9888816d4e0f3.

We had earlier discussion in the team about tracking libxml2.9 issues
explicitly as well, and decided not to do so, because the we aim to 1.
not have it in testing and should only live for a (hopefully) short
transition period in unstable.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -18351,7 +18351,6 @@ CVE-2025-9714 (Uncontrolled recursion inXPath evaluationin libxml2 up to and inc
 	- libxml2 2.14.5+dfsg-0.1
 	[trixie] - libxml2 <no-dsa> (Minor issue; can be piggy-backed in a future update)
 	[bookworm] - libxml2 <no-dsa> (Minor issue; can be piggy-backed in a future update)
-	- libxml2.9 2.12.7+dfsg+really2.9.14-2.3
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2392605
 	NOTE: https://gitlab.gnome.org/GNOME/libxslt/-/issues/148
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/677a42645ef22b5a50741bad5facf9d8a8bc6d21 (v2.10.0)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/28eabc7b16727b44763f9b75d9ba4cb5d6869b51

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/28eabc7b16727b44763f9b75d9ba4cb5d6869b51
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251020/a4eaacc2/attachment.htm>


More information about the debian-security-tracker-commits mailing list