[Git][security-tracker-team/security-tracker][master] Reference upstream commit for CVE-2025-26623
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Feb 20 07:11:47 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
d220e63c by Salvatore Bonaccorso at 2025-02-20T08:11:22+01:00
Reference upstream commit for CVE-2025-26623
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -271,6 +271,7 @@ CVE-2025-26623 (Exiv2 is a C++ library and a command-line utility to read, write
NOTE: https://github.com/Exiv2/exiv2/security/advisories/GHSA-38h4-fx85-qcx7
NOTE: https://github.com/Exiv2/exiv2/issues/3168
NOTE: Introduced with (v0.28.0): https://github.com/Exiv2/exiv2/pull/2478
+ NOTE: Fixed by: https://github.com/Exiv2/exiv2/commit/ebff8b48820b96c786cfddbf0bebb395cb1317d7
CVE-2025-26620 (Duende.AccessTokenManagement is a set of .NET libraries that manage OA ...)
NOT-FOR-US: Duende.AccessTokenManagement
CVE-2025-26604 (Discord-Bot-Framework-Kernel is a Discord bot framework built with int ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d220e63cb77f49d7344c6879d792ccd8cd9332a6
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d220e63cb77f49d7344c6879d792ccd8cd9332a6
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250220/b3a3168a/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list