[Git][security-tracker-team/security-tracker][master] Add CVE-2025-39665/nagvis

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Dec 4 06:55:33 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5abec0b7 by Salvatore Bonaccorso at 2025-12-04T07:54:56+01:00
Add CVE-2025-39665/nagvis

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -83,7 +83,9 @@ CVE-2025-50361 (Buffer Overflow was found in SmallBASIC community SmallBASIC wit
 CVE-2025-50360 (A heap buffer overflow in compiler.c and compiler.h in Pepper language ...)
 	TODO: check
 CVE-2025-39665 (User enumeration in Nagvis' Checkmk MultisiteAuth before version 1.9.4 ...)
-	TODO: check
+	- nagvis 1:1.9.48-1
+	NOTE: https://github.com/NagVis/nagvis/pull/411
+	NOTE: Fixed by: https://github.com/NagVis/nagvis/commit/1a3d3ed21fb974da952ce2df13f20c2884626ebe (nagvis-1.9.48)
 CVE-2025-34319 (TOTOLINK N300RT wireless router firmware versions prior toV3.4.0-B2025 ...)
 	NOT-FOR-US: TOTOLINK
 CVE-2025-33211 (NVIDIA Triton Server for Linux contains a vulnerability where an attac ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5abec0b755b7b15e2ebc6b3bf4d9192a2aaf2b9f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5abec0b755b7b15e2ebc6b3bf4d9192a2aaf2b9f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251204/329d889b/attachment.htm>


More information about the debian-security-tracker-commits mailing list