[Git][security-tracker-team/security-tracker][master] Track fixed version for git issues via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jul 31 04:50:33 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ae950ca9 by Salvatore Bonaccorso at 2025-07-31T05:50:06+02:00
Track fixed version for git issues via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6744,17 +6744,17 @@ CVE-2025-48386 (Git is a fast, scalable, distributed revision control system wit
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
 	NOTE: Fixed by: https://github.com/git/git/commit/9de345cb273cc7faaeda279c7e07149d8a15a319 (v2.43.7)
 CVE-2025-48385 (Git is a fast, scalable, distributed revision control system with an u ...)
-	- git <unfixed> (bug #1108983)
+	- git 1:2.50.1-0.1 (bug #1108983)
 	NOTE: https://github.com/git/git/security/advisories/GHSA-m98c-vgpc-9655
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
 	NOTE: Fixed by: https://github.com/git/git/commit/35cb1bb0b92c132249d932c05bbd860d410e12d4 (v2.43.7)
 CVE-2025-48384 (Git is a fast, scalable, distributed revision control system with an u ...)
-	- git <unfixed> (bug #1108983)
+	- git 1:2.50.1-0.1 (bug #1108983)
 	NOTE: https://github.com/git/git/security/advisories/GHSA-vwqx-4fm8-6qc9
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
 	NOTE: Fixed by: https://github.com/git/git/commit/05e9cd64ee23bbadcea6bcffd6660ed02b8eab89 (2.43.7)
 CVE-2025-46835 (Git GUI allows you to use the Git source control management tools via  ...)
-	- git <unfixed> (bug #1108983)
+	- git 1:2.50.1-0.1 (bug #1108983)
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
 	NOTE: Merge commit: https://github.com/git/git/commit/d61cfed2c23705fbeb9c0d08f59e75ee08738950 (v2.43.7)
 CVE-2025-46334 (Git GUI allows you to use the Git source control management tools via  ...)
@@ -6762,7 +6762,7 @@ CVE-2025-46334 (Git GUI allows you to use the Git source control management tool
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
 	NOTE: Merge commit: https://github.com/git/git/commit/d61cfed2c23705fbeb9c0d08f59e75ee08738950 (v2.43.7)
 CVE-2025-27614 (Gitk is a Tcl/Tk based Git history browser. Starting with 2.41.0, a Gi ...)
-	- git <unfixed> (bug #1108983)
+	- git 1:2.50.1-0.1 (bug #1108983)
 	[bookworm] - git <not-affected> (Vulnerable code not present)
 	[bullseye] - git <not-affected> (Vulnerable code not present)
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
@@ -6770,7 +6770,7 @@ CVE-2025-27614 (Gitk is a Tcl/Tk based Git history browser. Starting with 2.41.0
 	NOTE: Introduced after: https://github.com/git/git/commit/bb5cb23daf751790950ff9f761f8884e21c88d00 (v2.41.0)
 	NOTE: Fixed by: https://github.com/git/git/commit/8e3070aa5e331be45d4d03e3be41f84494fce129 (v2.43.7)
 CVE-2025-27613 (Gitk is a Tcl/Tk based Git history browser. Starting with 1.7.0, when  ...)
-	- git <unfixed> (bug #1108983)
+	- git 1:2.50.1-0.1 (bug #1108983)
 	NOTE: https://lore.kernel.org/git/xmqq5xg2wrd1.fsf@gitster.g/
 	NOTE: Merge commit: https://github.com/git/git/commit/d61cfed2c23705fbeb9c0d08f59e75ee08738950 (v2.43.7)
 CVE-2024-36357 (A transient execution vulnerability in some AMD processors may allow a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae950ca945a78770d08bc0d06c15a6f45dce7990

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae950ca945a78770d08bc0d06c15a6f45dce7990
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250731/6915195e/attachment.htm>


More information about the debian-security-tracker-commits mailing list