[Git][security-tracker-team/security-tracker][master] Update status for CVE-2025-54349/iperf3
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 3 16:39:30 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
27421309 by Salvatore Bonaccorso at 2025-08-03T17:39:02+02:00
Update status for CVE-2025-54349/iperf3
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -38,8 +38,9 @@ CVE-2025-54350 (In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertio
NOTE: Fixed by: https://github.com/esnet/iperf/commit/de932ea16bc959f839d28d370f0602de52c5def1 (3.19.1)
CVE-2025-54349 (In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resul ...)
- iperf3 <unfixed>
- NOTE: https://github.com/esnet/iperf/commit/4e5313bab0b9b3fe03513ab54f722c8a3e4b7bdf (master)
- NOTE: https://github.com/esnet/iperf/commit/42280d2292ed5f213bfcb33b2206ebcdb151ae66 (3.19.1)
+ NOTE: Introduced with https://github.com/esnet/iperf/commit/a51045de196f762fb74c86184b03da148c4e8f07 (3.2rc1)
+ NOTE: Fixed by: https://github.com/esnet/iperf/commit/4e5313bab0b9b3fe03513ab54f722c8a3e4b7bdf (master)
+ NOTE: Fixed by: https://github.com/esnet/iperf/commit/42280d2292ed5f213bfcb33b2206ebcdb151ae66 (3.19.1)
CVE-2025-52133 (The Mocca Calendar application before 2.15 for XWiki allows XSS via a ...)
NOT-FOR-US: XWiki
CVE-2025-52132 (The Mocca Calendar application before 2.15 for XWiki allows XSS via a ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/27421309d641bc8b55babb34ed96c5ca580fc250
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/27421309d641bc8b55babb34ed96c5ca580fc250
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250803/fed8ed05/attachment.htm>
More information about the debian-security-tracker-commits
mailing list