[Git][security-tracker-team/security-tracker][master] CVE-2025-24898: Add reference to RUSTSEC-2025-0004
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Feb 11 09:21:45 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
92a05d09 by Salvatore Bonaccorso at 2025-02-11T10:19:22+01:00
CVE-2025-24898: Add reference to RUSTSEC-2025-0004
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1686,6 +1686,7 @@ CVE-2025-25062 (An XSS issue was discovered in Backdrop CMS 1.28.x before 1.28.5
CVE-2025-24898 (rust-openssl is a set of OpenSSL bindings for the Rust programming lan ...)
{DLA-4049-1}
- rust-openssl 0.10.70-1
+ NOTE: https://rustsec.org/advisories/RUSTSEC-2025-0004.html
NOTE: https://github.com/sfackler/rust-openssl/security/advisories/GHSA-rpmj-rpgj-qmpm
NOTE: https://github.com/sfackler/rust-openssl/pull/2360
NOTE: Fixed by: https://github.com/sfackler/rust-openssl/commit/f014afb230de4d77bc79dea60e7e58c2f47b60f2 (openssl-v0.10.70)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/92a05d091d5caa8a6feb5200e58cd867b283b6dd
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/92a05d091d5caa8a6feb5200e58cd867b283b6dd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250211/3ddcf25e/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list