[Git][security-tracker-team/security-tracker][master] Add CVE-2025-4011/redmine

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Apr 28 21:27:50 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
77da227b by Salvatore Bonaccorso at 2025-04-28T22:27:18+02:00
Add CVE-2025-4011/redmine

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -47,7 +47,8 @@ CVE-2025-4013 (A vulnerability was found in PHPGurukul Art Gallery Management Sy
 CVE-2025-4012 (A vulnerability was found in playeduxyz PlayEdu \u5f00\u6e90\u57f9\u8b ...)
 	NOT-FOR-US: playeduxyz PlayEdu
 CVE-2025-4011 (A vulnerability has been found in Redmine 6.0.0/6.0.1/6.0.2/6.0.3 and  ...)
-	TODO: check
+	- redmine 6.0.4+ds-1
+	[bookworm] - redmine <not-affected> (Vulnerable code introduced in 5.1.0)
 CVE-2025-46661 (IPW Systems Metazo through 8.1.3 allows unauthenticated Remote Code Ex ...)
 	NOT-FOR-US: IPW Systems Metazo
 CVE-2025-46614 (In Snowflake ODBC Driver before 3.7.0, in certain code paths, the Driv ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/77da227b4b6c88ffbfda16b0e437fdd390b4a7d3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/77da227b4b6c88ffbfda16b0e437fdd390b4a7d3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250428/26f92961/attachment.htm>


More information about the debian-security-tracker-commits mailing list