CVE-2025-22874

Source
https://cve.org/CVERecord?id=CVE-2025-22874
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-22874.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-22874
Aliases
Downstream
AZL (4)
BELL (1)
CGA (4469)
DEBIAN (1)
ECHO (1)
MGASA (1)
MINI (46)
OESA (3)
openSUSE (5)
RHSA (4)
SUSE (3)
UBUNTU (1)
Related
Withdrawn
2026-01-27T04:19:56Z
Published
2025-06-11T17:15:42Z
Modified
2026-07-17T21:02:47Z
Summary
[none]
Details

Calling Verify with a VerifyOptions.KeyUsages that contains ExtKeyUsageAny unintentionally disabledpolicy validation. This only affected certificate chains which contain policy graphs, which are rather uncommon.

References

Affected packages