CVE-2025-55014
The YouDao plugin for StarDict, as used in stardict 3.0.7+git20220909+dfsg-6 in Debian trixie and elsewhere, sends an X11 selection to the dict.youdao.com and dict.cn servers via cleartext HTTP.
Vendor
-
Product
-
CWE
Yayın Tarihi
2025-08-04 20:15:31
Güncelleme
2025-11-04 22:16:30
Source Identifier
cve@mitre.org
KEV Date Added
-
Kategoriler
Referanslar
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1110370
https://lists.debian.org/debian-user/2025/08/msg00076.html
https://packages.debian.org/trixie/stardict
https://packages.debian.org/trixie/stardict-gtk
https://stardict-4.sourceforge.net/index_en.php
https://www.openwall.com/lists/oss-security/2025/08/04/1
http://www.openwall.com/lists/oss-security/2025/08/08/2
https://lwn.net/SubscriberLink/1032732/3334850da49689e1/
https://news.ycombinator.com/item?id=44872313