[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 30 09:13:07 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9a266fe6 by security tracker role at 2025-07-30T08:12:59+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,195 +9,195 @@ CVE-2025-8320 (Tesla Wall Connector Content-Length Header Improper Input Validat
 CVE-2025-8319 (the BMA login interface allows arbitrary JavaScript or HTML to be writ ...)
 	TODO: check
 CVE-2025-8217 (The Amazon Q Developer Visual Studio Code (VS Code) extension v1.84.0  ...)
-	TODO: check
+	NOT-FOR-US: Amazon
 CVE-2025-7849 (A memory corruption vulnerability due to improper error handling when  ...)
-	TODO: check
+	NOT-FOR-US: National Instruments
 CVE-2025-7848 (A memory corruption vulnerability due to improper input validation in  ...)
-	TODO: check
+	NOT-FOR-US: National Instruments
 CVE-2025-7361 (A code injection vulnerability due to an improper initialization check ...)
-	TODO: check
+	NOT-FOR-US: National Instruments
 CVE-2025-54381 (BentoML is a Python library for building online serving systems optimi ...)
 	TODO: check
 CVE-2025-54126 (The WebAssembly Micro Runtime's (WAMR) iwasm package is the executable ...)
 	TODO: check
 CVE-2025-4426 (The vulnerability was identified in the code developed specifically fo ...)
-	TODO: check
+	NOT-FOR-US: Insyde
 CVE-2025-4425 (The vulnerability was identified in the code developed specifically fo ...)
-	TODO: check
+	NOT-FOR-US: Insyde
 CVE-2025-4424 (The vulnerability was identified in the code developed specifically fo ...)
-	TODO: check
+	NOT-FOR-US: Insyde
 CVE-2025-4423 (The vulnerability was identified in the code developed specifically fo ...)
-	TODO: check
+	NOT-FOR-US: Insyde
 CVE-2025-4422 (The vulnerability was identified in the code developed specifically fo ...)
-	TODO: check
+	NOT-FOR-US: Insyde
 CVE-2025-4421 (The vulnerability was identified in the code developed specifically fo ...)
-	TODO: check
+	NOT-FOR-US: Insyde
 CVE-2025-43277 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43276 (A logic error was addressed with improved error handling. This issue i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43275 (A race condition was addressed with additional validation. This issue  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43274 (A privacy issue was addressed by removing the vulnerable code. This is ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43273 (A permissions issue was addressed with additional sandbox restrictions ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43270 (An access issue was addressed with additional sandbox restrictions. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43267 (An injection issue was addressed with improved validation. This issue  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43266 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43265 (An out-of-bounds read was addressed with improved input validation. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43261 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43260 (This issue was addressed with improved data protection. This issue is  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43259 (This issue was addressed with improved redaction of sensitive informat ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43256 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43254 (An out-of-bounds read was addressed with improved input validation. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43253 (This issue was addressed with improved input validation. This issue is ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43252 (This issue was addressed by adding an additional prompt for user conse ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43251 (An authorization issue was addressed with improved state management. T ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43250 (A path handling issue was addressed with improved validation. This iss ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43249 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43248 (A logic issue was addressed with improved restrictions. This issue is  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43247 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43246 (This issue was addressed with improved checks. This issue is fixed in  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43245 (A downgrade issue was addressed with additional code-signing restricti ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43244 (A race condition was addressed with improved state handling. This issu ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43243 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43241 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43240 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43239 (An out-of-bounds access issue was addressed with improved bounds check ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43237 (An out-of-bounds write issue was addressed with improved bounds checki ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43235 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43234 (Multiple memory corruption issues were addressed with improved input v ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43233 (This issue was addressed with improved access restrictions. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43232 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43230 (The issue was addressed with additional permissions checks. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43229 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43228 (The issue was addressed with improved UI. This issue is fixed in iOS 1 ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43227 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43226 (An out-of-bounds read was addressed with improved input validation. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43225 (A logging issue was addressed with improved data redaction. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43224 (An out-of-bounds access issue was addressed with improved bounds check ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43223 (A denial-of-service issue was addressed with improved input validation ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43222 (A use-after-free issue was addressed by removing the vulnerable code.  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43221 (An out-of-bounds access issue was addressed with improved bounds check ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43220 (This issue was addressed with improved validation of symlinks. This is ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43218 (An out-of-bounds read was addressed with improved input validation. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43217 (The issue was addressed by adding additional logic. This issue is fixe ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43216 (A use-after-free issue was addressed with improved memory management.  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43215 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43214 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43213 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43212 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43211 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43209 (An out-of-bounds access issue was addressed with improved bounds check ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43206 (A parsing issue in the handling of directory paths was addressed with  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43199 (A permissions issue was addressed by removing the vulnerable code. Thi ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43198 (This issue was addressed by removing the vulnerable code. This issue i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43197 (This issue was addressed with additional entitlement checks. This issu ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43196 (A path handling issue was addressed with improved validation. This iss ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43195 (An issue existed in the handling of environment variables. This issue  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43194 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43193 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43192 (A configuration issue was addressed with additional restrictions. This ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43191 (A path handling issue was addressed with improved validation. This iss ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43189 (This issue was addressed with improved memory handling. This issue is  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43188 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43186 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43185 (A downgrade issue was addressed with additional code-signing restricti ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-43184 (This issue was addressed by adding an additional prompt for user conse ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-40600 (Use of Externally-Controlled Format String vulnerability in the SonicO ...)
-	TODO: check
+	NOT-FOR-US: SonicWall
 CVE-2025-31281 (An input validation issue was addressed with improved memory handling. ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31280 (A memory corruption issue was addressed with improved validation. This ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31279 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31278 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31277 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31276 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31275 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31273 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31243 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-31229 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-25011 (An uncontrolled search path element vulnerability can lead to local pr ...)
 	TODO: check
 CVE-2025-24224 (The issue was addressed with improved checks. This issue is fixed in t ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-24188 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-24119 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2025-0712 (An uncontrolled search path element vulnerability can lead to local pr ...)
 	TODO: check
 CVE-2025-7777



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9a266fe6cfd384725e2f9ba41e482907f3bec484

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9a266fe6cfd384725e2f9ba41e482907f3bec484
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250730/8a345146/attachment.htm>


More information about the debian-security-tracker-commits mailing list