[Git][security-tracker-team/security-tracker][master] auto-nfu: Update Trellix rule

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Jul 1 11:46:58 BST 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0700e983 by Moritz Muehlenhoff at 2025-07-01T12:46:34+02:00
auto-nfu: Update Trellix rule

- - - - -


2 changed files:

- data/CVE/list
- data/packages/nfu.yaml


Changes:

=====================================
data/CVE/list
=====================================
@@ -63,7 +63,7 @@ CVE-2025-6899 (A vulnerability, which was classified as critical, was found in D
 CVE-2025-6081 (Insufficiently Protected Credentials in LDAP in Konica Minoltabizhub 2 ...)
 	NOT-FOR-US: Konica
 CVE-2025-5967 (A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a  ...)
-	TODO: check
+	NOT-FOR-US: Trellix
 CVE-2025-53416
 	REJECTED
 CVE-2025-53415 (Delta Electronics DTM SoftProject File Parsing Deserialization of Untr ...)


=====================================
data/packages/nfu.yaml
=====================================
@@ -379,8 +379,9 @@
   allOf:
     - cna: trellix
     - anyOf:
-      - product: Trellix HX Console
+      - product: Endpoint Security HX
       - product: System Information Reporter
+      - product: Trellix HX Console
 # Description based rules
 - reason: Argo CD
   description: '.*\b(?i:Argo CD)\b.*'



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0700e9834a4ef1f7fe8b834f3fe99a88d25a74be

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0700e9834a4ef1f7fe8b834f3fe99a88d25a74be
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250701/21fca710/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list