CVE-2025-67858

NameCVE-2025-67858
DescriptionVerify interface input parameter on D-Bus methods
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-6095-1

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
foomuuri (PTS)trixie0.27-2vulnerable
trixie (security)0.27-2+deb13u1fixed
forky0.30-1vulnerable
sid0.31-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
foomuurisourcetrixie0.27-2+deb13u1DSA-6095-1
foomuurisource(unstable)0.31-1

Notes

Fixed by: https://github.com/FoobarOy/foomuuri/commit/d1961f420600d133e5f1d3125deb17445e7745ac (v0.31)
https://www.openwall.com/lists/oss-security/2026/01/07/9

Search for package or bug name: Reporting problems