[Git][security-tracker-team/security-tracker][master] Mark CVE-2025-69230/python-aiohttp as not present in Trixie, Bookworm, and Bullseye
Daniel Leidert (@dleidert)
dleidert at debian.org
Sat May 2 00:15:46 BST 2026
Daniel Leidert pushed to branch master at Debian Security Tracker / security-tracker
Commits:
83aa4a1f by Daniel Leidert at 2026-05-02T01:15:24+02:00
Mark CVE-2025-69230/python-aiohttp as not present in Trixie, Bookworm, and Bullseye
The Cookie related logging code got introduced with version 3.13.3, and then
subsequently expanded. Before, there is only one client_logger.warning() which
seems unrelated to the issue.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -55472,6 +55472,9 @@ CVE-2025-69226 (AIOHTTP is an asynchronous HTTP client/server framework for asyn
NOTE: Fixed by: https://github.com/aio-libs/aiohttp/commit/f2a86fd5ac0383000d1715afddfa704413f0711e (v3.13.3)
CVE-2025-69230 (AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...)
- python-aiohttp 3.13.3-1
+ [trixie] - python-aiohttp <not-affected> (Vulnerable code not present)
+ [bookworm] - python-aiohttp <not-affected> (Vulnerable code not present)
+ [bullseye] - python-aiohttp <not-affected> (Vulnerable code not present)
NOTE: https://github.com/aio-libs/aiohttp/security/advisories/GHSA-fh55-r93g-j68g
NOTE: Fixed by: https://github.com/aio-libs/aiohttp/commit/64629a0834f94e46d9881f4e99c41a137e1f3326 (v3.13.3)
CVE-2025-69229 (AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/83aa4a1f319e158731bc833571529bc335e72895
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/83aa4a1f319e158731bc833571529bc335e72895
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260501/7640423a/attachment.htm>
More information about the debian-security-tracker-commits
mailing list