CNNVD-202601-061 Information

CNNVD ID

CNNVD-202601-061

CVE-2025-69412

  • CNNVD Published: 2026-01-01

Description (Chinese)

messagelib是KDE开源的一个应用软件。用于Linux的小型C库。 messagelib 25.11.90之前版本存在信任管理问题漏洞,该漏洞源于忽略Google安全浏览查找API的SSL错误,可能导致威胁数据欺骗。

Description (English)

Messagelib is an application for KDE open source. Small C library for Linux. There was a trust management gap in the previous version of the messagelib 25.11.90, which stemmed from the omission of Google ’ s SSL error to safely browse for API, which could threaten data fraud.

Hazard Level

Critical

Vulnerability Type

信任管理问题

Affected Vendor

KDE

Published

2026-01-01

Last Modified

2026-02-24

References

https://developers.google.com/safe-browsing/v4 https://developers.google.com/safe-browsing/v4/lookup-api https://github.com/KDE/messagelib/commit/01adef0482bb3d5c817433db5208620c84a992b3 https://github.com/KDE/messagelib/compare/v25.11.80…v25.11.90

Patch

https://github.com/KDE/messagelib/tags

Share on: