CNNVD-202511-2164 Information

CNNVD ID

CNNVD-202511-2164

CVE-2025-65100

  • CNNVD Published: 2025-11-19

Description (Chinese)

Isar是ilbers GmbH开源的一个文件生成脚本。 Isar 0.11-rc1版本和0.11版本存在安全漏洞,该漏洞源于单独定义ISAR_APT_SNAPSHOT_DATE无法为安全分发设置正确时间戳,导致错过安全更新。

Description (English)

Isar is a file from the open source of lbers GmbH. Isar 0.11-rc1 and 0.11 have a security loophole, which stems from the fact that a separate definition of ISIC APT SNAPSHOT DATE is unable to set the correct time stamp for security distribution, leading to missed security updates.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

ilbers GmbH

Published

2025-11-19

Last Modified

2026-02-24

References

https://github.com/ilbers/isar/commit/3383fd808a4ced93e41e012660dfe364a3384434 https://github.com/ilbers/isar/commit/738bcbb716c7eb7b34cbb2293cae4f264b3925fe https://github.com/ilbers/isar/security/advisories/GHSA-3r9w-6cp6-7hm4 https://access.redhat.com/security/cve/cve-2025-65100

Patch

https://github.com/ilbers/isar/commit/3383fd808a4ced93e41e012660dfe364a3384434

Share on: