DEBIAN-CVE-2025-55174

Source
https://security-tracker.debian.org/tracker/CVE-2025-55174
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-55174.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2025-55174
Upstream
Published
2025-11-26T06:15:44.893Z
Modified
2025-11-27T04:01:14.546449Z
Severity
  • 3.2 (Low) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N CVSS Calculator
Summary
[none]
Details

In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead of QODevice::WriteOnly.

References

Affected packages

Debian:12 / skanpage

Package

Name
skanpage
Purl
pkg:deb/debian/skanpage?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

22.*
22.12.3-1
23.*
23.08.1-1
23.08.1-2
23.08.1-2.1
24.*
24.08.2-1
24.12.0-1
25.*
25.03.90-1
25.04.0-1
25.04.0-2
25.04.2-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-55174.json"

Debian:13 / skanpage

Package

Name
skanpage
Purl
pkg:deb/debian/skanpage?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

25.*
25.04.2-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-55174.json"

Debian:14 / skanpage

Package

Name
skanpage
Purl
pkg:deb/debian/skanpage?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

25.*
25.04.2-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-55174.json"