https://seclists.org/oss-sec/2025/q2/71: 3 new CVE's in old branch of GNU mailman
Published Apr 21, 2025
·Updated
Affected Software
1 affected component
Cpanel GNU Mailman
Frequently Asked Questions
1
What is the severity of CVE-2025-XXXX?
The severity of CVE-2025-XXXX is classified as moderate, impact-dependent on the specific configuration.
2
How do I fix CVE-2025-XXXX?
To fix CVE-2025-XXXX, upgrade GNU Mailman to version 2.1.40 or later.
3
What versions of GNU Mailman are affected by CVE-2025-XXXX?
CVE-2025-XXXX affects GNU Mailman version 2.1.39 and earlier versions.
4
Is CVE-2025-XXXX related to cPanel's modifications?
Yes, CVE-2025-XXXX arises from modifications made by cPanel LLC to the distributed version of GNU Mailman.
5
What impact does CVE-2025-XXXX have on users?
CVE-2025-XXXX may allow unauthorized access to specific features within GNU Mailman, posing a risk to user data.