{"id":"CGA-9283-xxrm-5j2j","modified":"2026-09-07T01:30:24.952330578Z","published":"2025-11-19T14:05:12Z","upstream":["CVE-2025-9230"],"references":[{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2025/09/30/5"},{"type":"WEB","url":"https://github.openssl.org/openssl/extended-releases/commit/c2b96348bfa662f25f4fabf81958ae822063dae3"},{"type":"WEB","url":"https://github.openssl.org/openssl/extended-releases/commit/dfbaf161d8dafc1132dd88cd48ad990ed9b4c8ba"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/10/msg00001.html"},{"type":"WEB","url":"https://openssl-library.org/news/secadv/20250930.txt"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/5965ea5dd6960f36d8b7f74f8eac67a8eb8f2b45"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/9e91358f365dee6c446dcdcdb01c04d2743fd280"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/a79c4ce559c6a3a8fd4109e9f33c1185d5bf2def"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/b5282d677551afda7d20e9c00e09561b547b2dfd"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/bae259a211ada6315dc50900686daaaaaa55f482"}],"affected":[{"package":{"name":"authentik","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/authentik?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2025.10.1-r4"}]}],"ecosystem_specific":{"components":[{"component_version":"","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/authentik","latest_event_status":"fixed","latest_event_timestamp":"2025-11-19T18:26:48Z","component_name":"authentik"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-9283-xxrm-5j2j.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}