[Git][security-tracker-team/security-tracker][master] CVE-2025-9648/bullseye

Bastien Roucariès (@rouca) rouca at debian.org
Tue Sep 30 16:43:12 BST 2025



Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker


Commits:
817cbd00 by Bastien Roucariès at 2025-09-30T17:42:42+02:00
CVE-2025-9648/bullseye

Minor issue DoS infinite loop

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -198,6 +198,7 @@ CVE-2024-58040 (Crypt::RandomEncryption for Perl version 0.01 uses insecure rand
 	NOT-FOR-US: Crypt::RandomEncryption Perl module
 CVE-2025-9648 (A vulnerability in the CivetWeb library's function mg_handle_form_requ ...)
 	- civetweb <unfixed>
+	[bullseye] - civetweb <postponed> (minor issue; DoS)
 	NOTE: https://github.com/civetweb/civetweb/issues/1348
 	NOTE: https://github.com/civetweb/civetweb/commit/782e18903515f43bafbf2e668994e82bdfa51133
 CVE-2025-8868 (In Progress Chef Automate, versions earlier than 4.13.295, on Linux x8 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/817cbd006a6ea9403624d5478f58da979449162d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/817cbd006a6ea9403624d5478f58da979449162d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250930/2a0a503a/attachment.htm>


More information about the debian-security-tracker-commits mailing list