[Git][security-tracker-team/security-tracker][master] Add CVE-2025-15506/opencolorio

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Jan 11 20:21:45 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
483fac1d by Salvatore Bonaccorso at 2026-01-11T21:21:18+01:00
Add CVE-2025-15506/opencolorio

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6,7 +6,9 @@ CVE-2025-68493 (Missing XML Validation vulnerability in Apache Struts, Apache St
 	- libstruts1.2-java <removed>
 	NOTE: https://cwiki.apache.org/confluence/display/WW/S2-069
 CVE-2025-15506 (A vulnerability was found in AcademySoftwareFoundation OpenColorIO up  ...)
-	TODO: check
+	- opencolorio <unfixed>
+	NOTE: https://github.com/AcademySoftwareFoundation/OpenColorIO/issues/2228
+	NOTE: https://github.com/AcademySoftwareFoundation/OpenColorIO/pull/2231
 CVE-2026-0841 (A vulnerability was detected in UTT \u8fdb\u53d6 520W 1.7.7-180627. Af ...)
 	NOT-FOR-US: UTT
 CVE-2026-0840 (A security vulnerability has been detected in UTT \u8fdb\u53d6 520W 1. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/483fac1d289aa7d8a8edcd996b4ac5486b26d943

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/483fac1d289aa7d8a8edcd996b4ac5486b26d943
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260111/a69736e6/attachment.htm>


More information about the debian-security-tracker-commits mailing list