[Git][security-tracker-team/security-tracker][master] Track proposed nginx update via bookworm-pu
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Feb 19 14:08:13 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6f0e890e by Salvatore Bonaccorso at 2025-02-19T15:07:55+01:00
Track proposed nginx update via bookworm-pu
- - - - -
2 changed files:
- data/CVE/list
- data/next-point-update.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -3568,6 +3568,7 @@ CVE-2025-24312 (When BIG-IP AFM is provisioned with IPS module enabled and proto
NOT-FOR-US: F5
CVE-2025-23419 (When multiple server blocks are configured to share the same IP addres ...)
- nginx 1.26.3-2 (bug #1095403)
+ [bookworm] - nginx <no-dsa> (Minor issue; can be mitigated with by configuration)
NOTE: https://www.openwall.com/lists/oss-security/2025/02/05/8
NOTE: https://github.com/nginx/nginx/commit/13935cf9fdc3c8d8278c70716417d3b71c36140e (release-1.26.3)
CVE-2025-23415 (An insufficient verification of data authenticity vulnerability exists ...)
=====================================
data/next-point-update.txt
=====================================
@@ -144,3 +144,5 @@ CVE-2023-3758
[bookworm] - sssd 2.8.2-4+deb12u1
CVE-2024-21543
[bookworm] - djoser 2.1.0-1+deb12u1
+CVE-2025-23419
+ [bookworm] - nginx 1.22.1-9+deb12u1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6f0e890ee1a931046b6daff5d15f3cebd7d1774f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6f0e890ee1a931046b6daff5d15f3cebd7d1774f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250219/4c1fe346/attachment.htm>
More information about the debian-security-tracker-commits
mailing list