[Git][security-tracker-team/security-tracker][master] Add reference to fixing commit for CVE-2025-5994/unbound

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jul 17 07:48:00 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d108c030 by Salvatore Bonaccorso at 2025-07-17T08:47:26+02:00
Add reference to fixing commit for CVE-2025-5994/unbound

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -13,6 +13,7 @@ CVE-2025-6982 (Use of Hard-coded Credentials in TP-Link Archer C50 V3(  <=  1807
 CVE-2025-5994 (A multi-vendor cache poisoning vulnerability named 'Rebirthday Attack' ...)
 	- unbound <unfixed>
 	NOTE: https://nlnetlabs.nl/downloads/unbound/CVE-2025-5994.txt
+	NOTE: Fixed by: https://github.com/NLnetLabs/unbound/commit/5bf82f246481098a6473f296b21fc1229d276c0f (release-1.23.1)
 CVE-2025-5284 (The Master Addons \u2013 Elementor Addons with White Label, Free Widge ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-54051 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d108c030fd60edc6c759c5baa0551903fe4a001f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d108c030fd60edc6c759c5baa0551903fe4a001f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250717/b43433a7/attachment.htm>


More information about the debian-security-tracker-commits mailing list