{"schema_version":"1.7.3","id":"openSUSE-SU-2025:14988-1","published":"2025-04-14T00:00:00Z","modified":"2026-02-04T02:45:13.995040Z","related":["CVE-2024-51744","CVE-2024-6104","CVE-2025-22868","CVE-2025-22869","CVE-2025-22870","CVE-2025-27144"],"upstream":["CVE-2024-51744","CVE-2024-6104","CVE-2025-22868","CVE-2025-22869","CVE-2025-22870","CVE-2025-27144"],"summary":"cosign-2.5.0-1.1 on GA media","details":"These are all security issues fixed in the cosign-2.5.0-1.1 package on the GA media of openSUSE Tumbleweed.","affected":[{"package":{"name":"cosign","ecosystem":"openSUSE:Tumbleweed","purl":"pkg:rpm/opensuse/cosign&distro=openSUSE%20Tumbleweed"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.5.0-1.1"}]}],"ecosystem_specific":{"binaries":[{"cosign":"2.5.0-1.1","cosign-bash-completion":"2.5.0-1.1","cosign-fish-completion":"2.5.0-1.1","cosign-zsh-completion":"2.5.0-1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2025:14988-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/IQWUH5CIGBJCVZRE6D76AYCLT3MS47XX/"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-51744"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-6104"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-22868"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-22869"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-22870"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-27144"}]}