VYPR
Low severity3.2NVD Advisory· Published Nov 26, 2025· Updated Apr 15, 2026

CVE-2025-55174

CVE-2025-55174

Description

In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead of QODevice::WriteOnly.

Patches

1
6ffe8477337b

GIT_SILENT made messages (after extraction)

https://github.com/KDE/skanpagel10n daemon scriptAug 6, 2025via osv
1 file changed · +1 1
  • org.kde.skanpage.appdata.xml+1 1 modified
    @@ -179,7 +179,7 @@ SPDX-License-Identifier: CC0-1.0
         <p xml:lang="zh-TW">功能:</p>
         <ul>
           <li>Scanning from flatbed and ADF scanners</li>
    -      <li xml:lang="ar">المسح الضوئي من الماسحات الضوئية المسطحة ووحدة تغذية المستندات التلقائية</li>
    +      <li xml:lang="ar">المسح الضوئي من الماسحات الضوئية المسطحة ووحدة تغذية المستندات الآليّة</li>
           <li xml:lang="az">Sabit şüşə üzərindən və vərəqi avtomatik ötürməklə oxutmanı dəstəkləyir</li>
           <li xml:lang="be">Сканаванне з планшэтных сканераў і сканераў ADF</li>
           <li xml:lang="bg">Сканиране с плоски и ADF скенери</li>
    

Vulnerability mechanics

Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

2

News mentions

0

No linked articles in our index yet.