PT-2025-30553 · Mailman 3 · Mailman 3

Matthias Gerstner

·

Published

2025-07-15

·

Updated

2025-09-03

·

CVE-2025-53882

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions mailman3 versions prior to 3.3.10-2.1
Description A reliance on untrusted inputs in a security decision within the logrotate configuration allows for potential escalation from mailman to root.
Recommendations Update mailman3 to version 3.3.10-2.1 or later.

Fix

LPE

Weakness Enumeration

Related Identifiers

CVE-2025-53882
OPENSUSE-SU-2025:15344-1

Affected Products

Mailman 3