[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jan 14 20:34:38 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
839954c7 by Salvatore Bonaccorso at 2025-01-14T21:33:38+01:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11,385 +11,385 @@ CVE-2025-23073 (Exposure of Sensitive Information to an Unauthorized Actor vulne
 CVE-2025-23072 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
 	TODO: check
 CVE-2025-23052 (Authenticated command injection vulnerability in the commandline inter ...)
-	TODO: check
+	NOT-FOR-US: HPE
 CVE-2025-23051 (An authenticated parameter injection vulnerability existsin the web-ba ...)
-	TODO: check
+	NOT-FOR-US: HPE
 CVE-2025-23042 (Gradio is an open-source Python package that allows quick building of  ...)
-	TODO: check
+	NOT-FOR-US: Gradio
 CVE-2025-23041 (Umbraco.Forms is a web form framework written for the nuget ecosystem. ...)
 	TODO: check
 CVE-2025-23025 (XWiki Platform is a generic wiki platform offering runtime services fo ...)
-	TODO: check
+	NOT-FOR-US: XWiki
 CVE-2025-23019 (IPv6-in-IPv4 tunneling (RFC 4213) allows an attacker to spoof and rout ...)
 	TODO: check
 CVE-2025-23018 (IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the  ...)
 	TODO: check
 CVE-2025-22984 (An access control issue in the component /api/squareComment/DelectSqua ...)
-	TODO: check
+	NOT-FOR-US: iceCMS
 CVE-2025-22983 (An access control issue in the component /square/getAllSquare/circle o ...)
-	TODO: check
+	NOT-FOR-US: iceCMS
 CVE-2025-21607 (Vyper is a Pythonic Smart Contract Language for the EVM. When the Vype ...)
-	TODO: check
+	NOT-FOR-US: Vyper
 CVE-2025-21417 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21413 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21411 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21409 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21405 (Visual Studio Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21403 (On-Premises Data Gateway Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21402 (Microsoft Office OneNote Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21395 (Microsoft Access Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21393 (Microsoft SharePoint Server Spoofing Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21389 (Windows upnphost.dll Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21382 (Windows Graphics Component Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21378 (Windows CSC Service Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21374 (Windows CSC Service Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21372 (Microsoft Brokering File System Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21370 (Windows Virtualization-Based Security (VBS) Enclave Elevation of Privi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21366 (Microsoft Access Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21365 (Microsoft Office Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21364 (Microsoft Excel Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21363 (Microsoft Word Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21362 (Microsoft Excel Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21361 (Microsoft Outlook Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21360 (Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21357 (Microsoft Outlook Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21356 (Microsoft Office Visio Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21354 (Microsoft Excel Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21348 (Microsoft SharePoint Server Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21346 (Microsoft Office Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21345 (Microsoft Office Visio Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21344 (Microsoft SharePoint Server Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21343 (Windows Web Threat Defense User Service Information Disclosure Vulnera ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21341 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21340 (Windows Virtualization-Based Security (VBS) Security Feature Bypass Vu ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21339 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21338 (GDI+ Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21336 (Windows Cryptographic Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21335 (Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21334 (Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21333 (Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21332 (MapUrlToZone Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21331 (Windows Installer Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21330 (Windows Remote Desktop ServicesDenial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21329 (MapUrlToZone Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21328 (MapUrlToZone Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21327 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21326 (Internet Explorer Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21324 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21323 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21321 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21320 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21319 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21318 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21317 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21316 (Windows Kernel Memory Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21315 (Microsoft Brokering File System Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21314 (Windows SmartScreen Spoofing Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21313 (Windows Security Account Manager (SAM) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21312 (Windows Smart Card Reader Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21311 (Windows NTLM V1 Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21310 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21309 (Windows Remote Desktop Services Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21308 (Windows Themes Spoofing Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21307 (Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execu ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21306 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21305 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21304 (Microsoft DWM Core Library Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21303 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21302 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21301 (Windows Geolocation Service Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21300 (Windows upnphost.dll Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21299 (Windows Kerberos Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21298 (Windows OLE Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21297 (Windows Remote Desktop Services Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21296 (BranchCache Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21295 (SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Ex ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21294 (Microsoft Digest Authentication Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21293 (Active Directory Domain Services Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21292 (Windows Search Service Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21291 (Windows Direct Show Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21290 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21289 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21288 (Windows COM Server Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21287 (Windows Installer Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21286 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21285 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21284 (Windows Virtual Trusted Platform Module Denial of Service Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21282 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21281 (Microsoft COM for Windows Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21280 (Windows Virtual Trusted Platform Module Denial of Service Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21278 (Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21277 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21276 (Windows MapUrlToZone Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21275 (Windows App Package Installer Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21274 (Windows Event Tracing Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21273 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21272 (Windows COM Server Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21271 (Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21270 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21269 (Windows HTML Platforms Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21268 (MapUrlToZone Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21266 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21265 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21263 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21261 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21260 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21258 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21257 (Windows WLAN AutoConfig Service Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21256 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21255 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21252 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21251 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21250 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21249 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21248 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21246 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21245 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21244 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21243 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21242 (Windows Kerberos Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21241 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21240 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21239 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21238 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21237 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21236 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21235 (Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21234 (Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21233 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21232 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21231 (IP Helper Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21230 (Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21229 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21228 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21227 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21226 (Windows Digital Media Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21225 (Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21224 (Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21223 (Windows Telephony Service Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21220 (Microsoft Message Queuing Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21219 (MapUrlToZone Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21218 (Windows Kerberos Denial of Service Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21217 (Windows NTLM Spoofing Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21215 (Secure Boot Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21214 (Windows BitLocker Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21213 (Secure Boot Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21211 (Secure Boot Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21210 (Windows BitLocker Information Disclosure Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21207 (Windows Connected Devices Platform Service (Cdpsvc) Denial of Service  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21202 (Windows Recovery Environment Agent Elevation of Privilege Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21193 (Active Directory Federation Server Spoofing Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21189 (MapUrlToZone Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21187 (Microsoft Power Automate Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21186 (Microsoft Access Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21178 (Visual Studio Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21176 (.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21173 (.NET Elevation of Privilege Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21172 (.NET and Visual Studio Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21171 (.NET Remote Code Execution Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-21139 (Substance3D - Designer versions 14.0 and earlier are affected by a Hea ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21138 (Substance3D - Designer versions 14.0 and earlier are affected by an ou ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21137 (Substance3D - Designer versions 14.0 and earlier are affected by a Hea ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21136 (Substance3D - Designer versions 14.0 and earlier are affected by an ou ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21135 (Animate versions 24.0.6, 23.0.9 and earlier are affected by an Integer ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21134 (Illustrator on iPad versions 3.0.7 and earlier are affected by an Inte ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21133 (Illustrator on iPad versions 3.0.7 and earlier are affected by an Inte ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21132 (Substance3D - Stager versions 3.0.4 and earlier are affected by an out ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21131 (Substance3D - Stager versions 3.0.4 and earlier are affected by an out ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21130 (Substance3D - Stager versions 3.0.4 and earlier are affected by an out ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21129 (Substance3D - Stager versions 3.0.4 and earlier are affected by a Heap ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21128 (Substance3D - Stager versions 3.0.4 and earlier are affected by a Stac ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21127 (Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-21122 (Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2025-20620 (SQL Injection vulnerability exists in STEALTHONE D220/D340 provided by ...)
-	TODO: check
+	NOT-FOR-US: STEALTHONE
 CVE-2025-20055 (OS command injection vulnerability exists in network storage servers S ...)
-	TODO: check
+	NOT-FOR-US: STEALTHONE
 CVE-2025-20016 (OS command injection vulnerability exists in network storage servers S ...)
-	TODO: check
+	NOT-FOR-US: STEALTHONE
 CVE-2025-0474 (Invoice Ninja is vulnerable to authenticated Server-Side Request Forge ...)
-	TODO: check
+	NOT-FOR-US: Invoice Ninja
 CVE-2025-0465 (A vulnerability was found in AquilaCMS 1.412.13. It has been rated as  ...)
-	TODO: check
+	NOT-FOR-US: AquilaCMS
 CVE-2025-0464 (A vulnerability was found in SourceCodester Task Reminder System 1.0.  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Task Reminder System
 CVE-2025-0463 (A vulnerability was found in Shanghai Lingdang Information Technology  ...)
-	TODO: check
+	NOT-FOR-US: Shanghai Lingdang Information Technology Lingdang CRM
 CVE-2025-0462 (A vulnerability was found in Shanghai Lingdang Information Technology  ...)
-	TODO: check
+	NOT-FOR-US: Shanghai Lingdang Information Technology Lingdang CRM
 CVE-2025-0461 (A vulnerability has been found in Shanghai Lingdang Information Techno ...)
-	TODO: check
+	NOT-FOR-US: Shanghai Lingdang Information Technology Lingdang CRM
 CVE-2025-0460 (A vulnerability, which was classified as critical, was found in Blog B ...)
 	TODO: check
 CVE-2025-0459 (A vulnerability, which was classified as problematic, has been found i ...)
@@ -455,7 +455,7 @@ CVE-2024-52967 (An improper neutralization of script-related html tags in a web
 CVE-2024-52963 (A out-of-bounds write in Fortinet FortiOS versions 7.6.0, 7.4.0 throug ...)
 	TODO: check
 CVE-2024-52898 (IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2024-50566 (A improper neutralization of special elements used in an os command (' ...)
 	TODO: check
 CVE-2024-50564 (A use of hard-coded cryptographic key in Fortinet FortiClientWindows v ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/839954c7235a8fe213fe5d575d3e3111e0ab6eaa

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/839954c7235a8fe213fe5d575d3e3111e0ab6eaa
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250114/e58aa382/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list