[Git][security-tracker-team/security-tracker][master] ATS DSA

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Jun 24 20:38:41 BST 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8d4dbeb8 by Moritz Mühlenhoff at 2025-06-24T21:37:52+02:00
ATS DSA

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -25984,7 +25984,6 @@ CVE-2024-13673 (The Big Boom Directory plugin for WordPress is vulnerable to Sto
 	NOT-FOR-US: WordPress plugin
 CVE-2024-53868 (Apache Traffic Server allows request smuggling if chunked messages are ...)
 	- trafficserver <unfixed> (bug #1101996)
-	[bookworm] - trafficserver <postponed> (Fix along with next DSA)
 	NOTE: https://www.openwall.com/lists/oss-security/2025/04/02/4
 	NOTE: https://github.com/apache/trafficserver/commit/f266206adb95951436a21850cef2ad8e9e4a28cf
 	NOTE: https://github.com/apache/trafficserver/commit/3d2f29c88f9b073cb0fd3b9c7f85430e2170acbb (9.2.10-rc0)


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[24 Jun 2025] DSA-5948-1 trafficserver - security update
+	{CVE-2024-53868 CVE-2025-31698 CVE-2025-49763}
+	[bookworm] - trafficserver 9.2.5+ds-0+deb12u3
 [23 Jun 2025] DSA-5947-1 xorg-server - security update
 	{CVE-2025-49175 CVE-2025-49176 CVE-2025-49177 CVE-2025-49178 CVE-2025-49179 CVE-2025-49180}
 	[bookworm] - xorg-server 2:21.1.7-3+deb12u10


=====================================
data/dsa-needed.txt
=====================================
@@ -73,8 +73,6 @@ sympa
 --
 tomcat10
 --
-trafficserver (jmm)
---
 wordpress
 --
 xen



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8d4dbeb8eb31e1f768e3a6aecabd5608f9696ab0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8d4dbeb8eb31e1f768e3a6aecabd5608f9696ab0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250624/0c2015f9/attachment.htm>


More information about the debian-security-tracker-commits mailing list