Skip to content

Conversation

@esselfe
Copy link
Member

@esselfe esselfe commented Dec 12, 2025

No description provided.

@esselfe
Copy link
Member Author

esselfe commented Dec 13, 2025

Fixes 3 CVEs:

  • Fix Out-of-bounds read & write in RFC 3211 KEK Unwrap. (CVE-2025-9230)
  • Fix Timing side-channel in SM2 algorithm on 64 bit ARM. (CVE-2025-9231)
  • Fix Out-of-bounds read in HTTP client no_proxy handling. (CVE-2025-9232)

@dagbrown dagbrown added the iso_ok Verified does not break the daily ISO build label Dec 13, 2025
@dagbrown dagbrown merged commit 7b9f24c into lunar-linux:master Dec 13, 2025
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

iso_ok Verified does not break the daily ISO build

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants