[Git][security-tracker-team/security-tracker][master] Correct tracking for CVE-2025-6663

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jul 8 20:04:42 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
561800b9 by Salvatore Bonaccorso at 2025-07-08T21:03:58+02:00
Correct tracking for CVE-2025-6663

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -349,7 +349,8 @@ CVE-2025-6712 (MongoDB Server may be susceptible to disruption caused by high me
 CVE-2025-6711 (An issue has been identified in MongoDB Server where unredacted querie ...)
 	- mongodb <removed>
 CVE-2025-6663 (GStreamer H266 Codec Parsing Stack-based Buffer Overflow Remote Code E ...)
-	- gst-plugins-bad1.0 1.26.3-1
+	[experimental] - gst-plugins-bad1.0 1.26.3-1
+	- gst-plugins-bad1.0 <unfixed>
 	[bookworm] - gst-plugins-bad1.0 <not-affected> (Vulnerable code not present)
 	[bullseye] - gst-plugins-bad1.0 <not-affected> (Vulnerable code not present)
 	NOTE: https://www.zerodayinitiative.com/advisories/ZDI-25-467/



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/561800b9e969e78bf74e3a5be31446599d85daee

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/561800b9e969e78bf74e3a5be31446599d85daee
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250708/5b063a21/attachment.htm>


More information about the debian-security-tracker-commits mailing list