CVE-2025-55174: Low severity KDE Skanpage vulnerability
Published Nov 26, 2025
·Updated
In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead of QODevice::WriteOnly.
Affected Software
1 affected component
KDE Skanpage<25.08.0
Event History
Nov 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-55174?
CVE-2025-55174 has a medium severity level as it can lead to unintended data exposure or corruption.
2
How do I fix CVE-2025-55174?
To fix CVE-2025-55174, update KDE Skanpage to version 25.08.0 or later.
3
What is the impact of CVE-2025-55174?
The impact of CVE-2025-55174 can result in data corruption due to incomplete file overwrites.
4
Which versions of KDE Skanpage are affected by CVE-2025-55174?
KDE Skanpage versions prior to 25.08.0 are affected by CVE-2025-55174.
5
Is there a workaround for CVE-2025-55174 before applying a fix?
There is no official workaround for CVE-2025-55174; upgrading to a fixed version is recommended.