RHSA-2025:1255: Moderate: doxygen security update
Doxygen can generate an online class browser (in HTML) and/or a reference manual (in LaTeX) from a set of documented source files. The documentation is extracted directly from the sources. Doxygen can also be configured to extract the code structure from undocumented source files. <br>Security Fix(es):<br><li> jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods (CVE-2020-11023)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:1255?
The severity of RHSA-2025:1255 is classified as moderate.
How do I fix RHSA-2025:1255?
To fix RHSA-2025:1255, update the doxygen package to version 1.8.5-4.el7_9.1 or later.
Which software versions are affected by RHSA-2025:1255?
RHSA-2025:1255 affects multiple Red Hat Enterprise Linux Server versions, specifically those using doxygen prior to 1.8.5-4.el7_9.1.
Is RHSA-2025:1255 applicable to both x86_64 and ppc64le architectures?
Yes, RHSA-2025:1255 is applicable to both x86_64 and ppc64le architectures.
How can I verify if I have RHSA-2025:1255 vulnerability on my system?
You can verify if you are vulnerable to RHSA-2025:1255 by checking the installed version of the doxygen package on your system.