alpine · CVE-2025-69412

Quick triage

Priority: low Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2025-69412: 1 source package rows (messagelib); 17 state rows across 2 repos (3.23-community, edge-community); fixed 1, open 16.

Description:

KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in the Google Safe Browsing Lookup API (aka phishing API), which might allow spoofing of threat data. NOTE: this Lookup API is not contacted in the messagelib default configuration.

cvelogic Threat Intelligence