The issue was announced here: https://www.openwall.com/lists/oss-security/2025/06/02/1
Status comment: (none) => Fixed upstream in 1.6.11Whiteboard: (none) => MGA9TOOSource RPM: (none) => roundcubemail-1.6.10-1.mga10.src.rpm, roundcubemail-1.6.8-1.mga9.src.rpm
Follow-up: https://www.openwall.com/lists/oss-security/2025/06/02/3 For Cauldron, roundcubemail-1.6.11-1.mga10 solves the issue.
CVE: (none) => CVE-2025-49113Whiteboard: MGA9TOO => (none)Source RPM: roundcubemail-1.6.10-1.mga10.src.rpm, roundcubemail-1.6.8-1.mga9.src.rpm => roundcubemail-1.6.8-1.mga9.src.rpmSummary: roundcube new security issue => roundcube new security issue CVE-2025-49113Version: Cauldron => 9
Duplicate of bug 34341. *** This bug has been marked as a duplicate of bug 34341 ***
Status: NEW => RESOLVEDResolution: (none) => DUPLICATE