Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
4574631a by Salvatore Bonaccorso at 2025-07-18T22:37:58+02:00
Add two 7zip issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -149,9 +149,20 @@ CVE-2025-53909 (mailcow: dockerized is an open source
groupware/email suite base
CVE-2025-53867 (Island Lake WebBatch before 2025C allows Remote Code Execution
via a c ...)
NOT-FOR-US: Island Lake WebBatch
CVE-2025-53817 (7-Zip is a file archiver with a high compression ratio. 7-Zip
supports ...)
- TODO: check
+ - 7zip 25.00+dfsg-1 (unimportant)
+ - p7zip 16.02+transitional.1 (unimportant)
+ NOTE: Crash in CLI tool, no security impact
+ NOTE: https://securitylab.github.com/advisories/GHSL-2025-059_7-Zip/
+ NOTE: https://www.openwall.com/lists/oss-security/2025/07/18/2
+ NOTE: Since p7zip/16.02+transitional.1 src:p7zip is only a empty source
package
+ NOTE: depending on 7zip. Mark this version as fixed version.
CVE-2025-53816 (7-Zip is a file archiver with a high compression ratio. Zeroes
written ...)
- TODO: check
+ - 7zip 25.00+dfsg-1
+ - p7zip 16.02+transitional.1
+ NOTE: https://securitylab.github.com/advisories/GHSL-2025-058_7-Zip/
+ NOTE: https://www.openwall.com/lists/oss-security/2025/07/18/1
+ NOTE: Since p7zip/16.02+transitional.1 src:p7zip is only a empty source
package
+ NOTE: depending on 7zip. Mark this version as fixed version.
CVE-2025-53638 (Solady is software that provides Solidity snippets with APIs.
Starting ...)
TODO: check
CVE-2025-52933
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4574631a36460b3662ea4581fe556d589b981950
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4574631a36460b3662ea4581fe556d589b981950
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits