[Git][security-tracker-team/security-tracker][master] CVE assigned for qbittorrent issue

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jul 18 20:51:08 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
761b4355 by Salvatore Bonaccorso at 2025-07-18T21:50:38+02:00
CVE assigned for qbittorrent issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3928,7 +3928,7 @@ CVE-2024-25176 (LuaJIT through 2.1 has a stack-buffer-overflow in lj_strfmt_wfnu
 	NOTE: Fixed by: https://github.com/LuaJIT/LuaJIT/commit/343ce0edaf3906a62022936175b2f5410024cbfc (v2.1)
 CVE-2023-51232 (Directory Traversal vulnerability in dagster-webserver Dagster thru 1. ...)
 	NOT-FOR-US: dagster-webserver Dagster
-CVE-2025-XXXX [RSS/SEARCH: Prevent opening local files if web page is expected]
+CVE-2025-54310 [RSS/SEARCH: Prevent opening local files if web page is expected]
 	- qbittorrent 5.1.0-2 (bug #1108843)
 	[bookworm] - qbittorrent <no-dsa> (Minor issue)
 	[bullseye] - qbittorrent <postponed> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/761b4355bd4810de378946cfb1c705a8c0f44b7c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/761b4355bd4810de378946cfb1c705a8c0f44b7c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250718/5373ca8d/attachment.htm>


More information about the debian-security-tracker-commits mailing list