Skip to content

Comments

SYS-674 skip an unremediated CVE in mythbackend#262

Merged
instantlinux merged 1 commit intomainfrom
SYS-674_mythtv_onemoretry
Feb 12, 2026
Merged

SYS-674 skip an unremediated CVE in mythbackend#262
instantlinux merged 1 commit intomainfrom
SYS-674_mythtv_onemoretry

Conversation

@instantlinux
Copy link
Owner

Summary of Changes

  • Add CVE-2025-9900 to the ignore list of trivy
  • Rip out the rest of apache and php from the mythtv-backend image
  • Bump restic helm chart to 0.18.1-r4

Why is this change being made?

First one thing. Then another. Then another damn problem. This time it was CVE-2025-9900, a high-sev CVE in ubuntu noble out there for several months without any fix available. MythTV version 36 switched over since version 35 to libqt5webengine, where this vulnerability resides.

How was this tested? How can the reviewer verify your testing?

Local testing.

Completion checklist

  • The pull request is linked to all related issues
  • This change has unit test coverage
  • Documentation has been updated
  • Dependencies have been updated and verified

@instantlinux instantlinux added the dependencies Pull requests that update a dependency file label Feb 12, 2026
@instantlinux instantlinux merged commit 98020ad into main Feb 12, 2026
1 check passed
@instantlinux instantlinux deleted the SYS-674_mythtv_onemoretry branch February 12, 2026 20:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant