https://seclists.org/oss-sec/2025/q2/160: describing affected systems (was: scen: Multiple Security Issues in Scen (mostly affecting lease 5.0.0 and setuid-root installations))
Published May 17, 2025
·Updated
Affected Software
2 affected components
NetBSD NetBSD>=9.x
pkgsrc pkgsrc
Frequently Asked Questions
1
What systems are affected by CVE-2025-XXXXX?
CVE-2025-XXXXX affects multiple installations of pkgsrc, particularly those involving NetBSD 9.x, macOS, SmartOS, and several Linux distributions.
2
What versions of pkgsrc are vulnerable in CVE-2025-XXXXX?
The vulnerability primarily affects installations of pkgsrc in lease version 5.0.0 and setuid-root configurations.
3
How can I mitigate the risks associated with CVE-2025-XXXXX?
To mitigate CVE-2025-XXXXX, it is recommended to upgrade to a patched version of pkgsrc or apply appropriate security configurations.
4
What is the nature of the vulnerabilities in CVE-2025-XXXXX?
CVE-2025-XXXXX includes multiple security issues affecting the security and integrity of systems using vulnerable pkgsrc installations.
5
When was CVE-2025-XXXXX published?
CVE-2025-XXXXX was published on May 17, 2025.