[Git][security-tracker-team/security-tracker][master] Add CVE-2025-64775

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Dec 2 08:00:45 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
035b572b by Salvatore Bonaccorso at 2025-12-02T08:40:28+01:00
Add CVE-2025-64775

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -27,7 +27,9 @@ CVE-2025-65404 (A buffer overflow in the getSideInfo2() function of Live555 Stre
 CVE-2025-65403 (A buffer overflow in the g_cfg.MaxUsers component of LightFTP v2.0 all ...)
 	NOT-FOR-US: LightFTP
 CVE-2025-64775 (Denial of Service vulnerability in Apache Struts, file leak in multipa ...)
-	TODO: check
+	- libstruts1.2-java <undetermined>
+	NOTE: https://cwiki.apache.org/confluence/display/WW/S2-068
+	TODO: check if specific to 2.x onwards, or 1.2 as well and just not listed
 CVE-2025-64030 (Eximbills Enterprise 4.1.5 (Built on 2020-10-30) is vulnerable to auth ...)
 	NOT-FOR-US: Eximbills Enterprise
 CVE-2025-63535 (A SQL injection vulnerability exists in the Blood Bank Management Syst ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/035b572babb59c7207b28ee9faca0dc6135b92c1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/035b572babb59c7207b28ee9faca0dc6135b92c1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251202/3ddf897f/attachment.htm>


More information about the debian-security-tracker-commits mailing list