Skip to content

fix(augeas): CVE-2025-2588#1

Merged
Zeno-sole merged 1 commit intomasterfrom
fix/CVE-2025-2588
Apr 30, 2026
Merged

fix(augeas): CVE-2025-2588#1
Zeno-sole merged 1 commit intomasterfrom
fix/CVE-2025-2588

Conversation

@deepin-ci-robot
Copy link
Copy Markdown
Contributor

Security Update

CVE-2025-2588

CVE Details

  • CVE-2025-2588: Fix NULL Pointer Dereference in re_case_expand (src/fa.c)
    • Severity: MEDIUM (CVSS 4.8)
    • CWE: CWE-476 (NULL Pointer Dereference)
    • Affected: augeas 1.14.1
    • Vulnerability: Local attacker can trigger null pointer dereference via crafted input

Upstream

Changes

  • Added patch: debian/patches/cve_2025_2588.patch
  • Updated: debian/patches/series
  • Updated: debian/changelog (version: 1.12.0-2deepin1)

Metadata


Generated by AI

Fix parse_regexp error handling in src/fa.c

Return _REG_ENOSYS if no specific error was set yet
parse_regexp failed.

Upstream: hercules-team/augeas@af2aa88

Generated-By: glm-5.1

Co-Authored-By: hudeng <hudeng@deepin.org>
@deepin-ci-robot
Copy link
Copy Markdown
Contributor Author

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by:
Once this PR has been reviewed and has the lgtm label, please assign zeno-sole for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@github-actions
Copy link
Copy Markdown

TAG Bot

TAG: 1.12.0-2deepin1
EXISTED: no
DISTRIBUTION: unstable

@hudeng-go
Copy link
Copy Markdown
Contributor

/integrate

@github-actions
Copy link
Copy Markdown

AutoIntegrationPr Bot
auto integrate with pr url: deepin-community/Repository-Integration#3903
PrNumber: 3903
PrBranch: auto-integration-25144082753

@Zeno-sole
Copy link
Copy Markdown

上游 tests/fatest.c 修复未提交

@Zeno-sole Zeno-sole merged commit cb69e82 into master Apr 30, 2026
6 of 9 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants