[Git][security-tracker-team/security-tracker][master] Reassocite some NFUs with itp'ed entry

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 2 21:23:23 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
eadf4cae by Salvatore Bonaccorso at 2025-07-02T22:22:40+02:00
Reassocite some NFUs with itp'ed entry

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16721,7 +16721,7 @@ CVE-2025-47203 (dbclient in Dropbear SSH before 2025.88 allows command injection
 CVE-2025-46828 (WeGIA is a web manager for charitable institutions.  An unauthenticate ...)
 	NOT-FOR-US: WeGIA
 CVE-2025-46827 (Graylog is a free and open log management platform. Prior to versions  ...)
-	NOT-FOR-US: Graylog
+	- graylog2 <itp> (bug #652273)
 CVE-2025-46824 (The Discourse Code Review Plugin allows users to review GitHub commits ...)
 	NOT-FOR-US: Discourse Code Review Plugin
 CVE-2025-46551 (JRuby-OpenSSL is an add-on gem for JRuby that emulates the Ruby OpenSS ...)
@@ -26620,7 +26620,7 @@ CVE-2025-31475 (tarteaucitron.js is a compliant and accessible cookie banner. A
 CVE-2025-31138 (tarteaucitron.js is a compliant and accessible cookie banner. A vulner ...)
 	NOT-FOR-US: tarteaucitron.js
 CVE-2025-30373 (Graylog is a free and open log management platform. Starting with 6.1, ...)
-	NOT-FOR-US: Graylog
+	- graylog2 <itp> (bug #652273)
 CVE-2025-2251 (A security flaw exists in WildFly and JBoss Enterprise Application Pla ...)
 	NOT-FOR-US: Red Hat WildFly and JBoss Enterprise Application Platform (EAP)
 CVE-2025-29769 (libvips is a demand-driven, horizontally threaded image processing lib ...)
@@ -70844,7 +70844,7 @@ CVE-2024-52584 (Autolab is a course management service that enables auto-graded
 CVE-2024-52583 (The WesHacks GitHub repository provides the official Hackathon competi ...)
 	NOT-FOR-US: WesHacks
 CVE-2024-52506 (Graylog is a free and open log management platform. The reporting func ...)
-	NOT-FOR-US: Graylog
+	- graylog2 <itp> (bug #652273)
 CVE-2024-52418 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-52417 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eadf4cae9af46e55b8ce5f0acb0e3bc40d27630f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eadf4cae9af46e55b8ce5f0acb0e3bc40d27630f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250702/fba0d7cd/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list