[Git][security-tracker-team/security-tracker][master] new otrs issues

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Jan 27 08:25:13 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a8a0516b by Moritz Muehlenhoff at 2025-01-27T09:24:52+01:00
new otrs issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,9 @@
 CVE-2025-24390 (A vulnerability in OTRS Application Server and reverse proxy settings  ...)
-	TODO: check
+	NOT-FOR-US: OTRS
+	NOTE: Could possibly affect Znuny, we'll let their security team figure it out
 CVE-2025-24389 (Certain errors of the upstream libraries will insert sensitive informa ...)
-	TODO: check
+	NOT-FOR-US: OTRS
+	NOTE: Could possibly affect Znuny, we'll let their security team figure it out
 CVE-2025-0722 (A vulnerability classified as critical was found in needyamin image_ga ...)
 	NOT-FOR-US: needyamin image gallery
 CVE-2025-0721 (A vulnerability classified as problematic has been found in needyamin  ...)
@@ -9,9 +11,11 @@ CVE-2025-0721 (A vulnerability classified as problematic has been found in needy
 CVE-2025-0720 (A vulnerability was found in Microword eScan Antivirus 7.0.32 on Linux ...)
 	NOT-FOR-US: Microword eScan Antivirus
 CVE-2024-43446 (An improper privilege management vulnerability in OTRS Generic Interfa ...)
-	TODO: check
+	NOT-FOR-US: OTRS
+	NOTE: Could possibly affect Znuny, we'll let their security team figure it out
 CVE-2024-43445 (A vulnerability exists in OTRS and ((OTRS Community Edition)) that fai ...)
-	TODO: check
+	NOT-FOR-US: OTRS
+	NOTE: Could possibly affect Znuny, we'll let their security team figure it out
 CVE-2024-28771 (IBM Security Directory Integrator 7.2.0 and IBM Security Verify Direct ...)
 	NOT-FOR-US: IBM
 CVE-2024-28770 (IBM Security Directory Integrator 7.2.0 and IBM Security Verify Direct ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a8a0516b4f7412da8a0a6727167d9dab6478cca2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a8a0516b4f7412da8a0a6727167d9dab6478cca2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250127/ced20fb4/attachment.htm>


More information about the debian-security-tracker-commits mailing list