[Git][security-tracker-team/security-tracker][master] Add CVE-2025-24857/u-boot

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Dec 21 08:10:50 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2bbac9f5 by Salvatore Bonaccorso at 2025-12-21T09:10:19+01:00
Add CVE-2025-24857/u-boot

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4488,7 +4488,8 @@ CVE-2025-62181 (Pega Platform versions 7.1.0 through Infinity 25.1.0 are affecte
 CVE-2025-4097 (GitLab has remediated an issue in GitLab CE/EE affecting all versions  ...)
 	- gitlab <unfixed>
 CVE-2025-24857 (Improper access control for volatile memory containing boot code in Un ...)
-	TODO: check
+	- u-boot 2017.11+dfsg1-2
+	NOTE: https://www.cisa.gov/news-events/ics-advisories/icsa-25-343-01
 CVE-2025-14485 (A weakness has been identified in EFM ipTIME A3004T 14.19.0. This vuln ...)
 	NOT-FOR-US: EFM ipTIME A3004T
 CVE-2025-14157 (GitLab has remediated an issue in GitLab CE/EE affecting all versions  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2bbac9f5a6c73ffc3c424914b49c8330f8a14b4c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2bbac9f5a6c73ffc3c424914b49c8330f8a14b4c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251221/b9a8c1a1/attachment.htm>


More information about the debian-security-tracker-commits mailing list