[Git][security-tracker-team/security-tracker][master] Update CVE-2025-27516 to directly reference commit

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 6 19:53:22 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3a8eb761 by Salvatore Bonaccorso at 2025-03-06T20:52:22+01:00
Update CVE-2025-27516 to directly reference commit

No change in practice, but as the merge commit covered only one commit,
reference directly.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -232,7 +232,7 @@ CVE-2025-27622 (Jenkins 2.499 and earlier, LTS 2.492.1 and earlier does not reda
 CVE-2025-27516 (Jinja is an extensible templating engine. Prior to 3.1.6, an oversight ...)
 	- jinja2 <unfixed>
 	NOTE: https://github.com/pallets/jinja/security/advisories/GHSA-cpwx-vrp4-4pq7
-	NOTE: https://github.com/pallets/jinja/commit/90457bbf33b8662926ae65cdde4c4c32e756e403 (v3.1.6)
+	NOTE: Fixed by: https://github.com/pallets/jinja/commit/065334d1ee5b7210e1a0a93c37238c86858f2af7 (3.1.6)
 CVE-2025-27508 (Emissary is a P2P based data-driven workflow engine. The ChecksumCalcu ...)
 	NOT-FOR-US: Emissary
 CVE-2025-25634 (A vulnerability has been found in Tenda AC15 15.03.05.19 in the functi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3a8eb76114db54148657427b96eb5ec0bb68d0ae

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3a8eb76114db54148657427b96eb5ec0bb68d0ae
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250306/6e8953d4/attachment.htm>


More information about the debian-security-tracker-commits mailing list