[Git][security-tracker-team/security-tracker][master] Triage CVE-2025-2173, CVE-2025-2174, CVE-2025-2175, CVE-2025-2176 &...

Chris Lamb (@lamby) lamby at debian.org
Tue Mar 11 12:46:16 GMT 2025



Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5d7dd0fc by Chris Lamb at 2025-03-11T12:45:58+00:00
Triage CVE-2025-2173, CVE-2025-2174, CVE-2025-2175, CVE-2025-2176 & CVE-2025-2177 in zvbi for bullseye LTS.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3,25 +3,30 @@ CVE-2025-2190 (The mobile application (com.transsnet.store) has a man-in-the-mid
 CVE-2025-2177 (A vulnerability classified as critical was found in libzvbi up to 0.2. ...)
 	- zvbi <unfixed>
 	[bookworm] - zvbi <no-dsa> (Minor issue)
+	[bullseye] - zvbi <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://github.com/zapping-vbi/zvbi/security/advisories/GHSA-g7cg-7gw9-v8cf
 	NOTE: https://github.com/zapping-vbi/zvbi/commit/ca1672134b3e2962cd392212c73f44f8f4cb489f (v0.2.44)
 CVE-2025-2176 (A vulnerability classified as critical has been found in libzvbi up to ...)
 	- zvbi <unfixed>
 	[bookworm] - zvbi <no-dsa> (Minor issue)
+	[bullseye] - zvbi <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://github.com/zapping-vbi/zvbi/security/advisories/GHSA-g7cg-7gw9-v8cf
 	NOTE: https://github.com/zapping-vbi/zvbi/commit/ca1672134b3e2962cd392212c73f44f8f4cb489f (v0.2.44)
 CVE-2025-2175 (A vulnerability was found in libzvbi up to 0.2.43. It has been rated a ...)
 	- zvbi <unfixed>
 	[bookworm] - zvbi <no-dsa> (Minor issue)
+	[bullseye] - zvbi <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://github.com/zapping-vbi/zvbi/security/advisories/GHSA-g7cg-7gw9-v8cf
 CVE-2025-2174 (A vulnerability was found in libzvbi up to 0.2.43. It has been declare ...)
 	- zvbi <unfixed>
 	[bookworm] - zvbi <no-dsa> (Minor issue)
+	[bullseye] - zvbi <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://github.com/zapping-vbi/zvbi/security/advisories/GHSA-g7cg-7gw9-v8cf
 	NOTE: https://github.com/zapping-vbi/zvbi/commit/ca1672134b3e2962cd392212c73f44f8f4cb489f (v0.2.44)
 CVE-2025-2173 (A vulnerability was found in libzvbi up to 0.2.43. It has been classif ...)
 	- zvbi <unfixed>
 	[bookworm] - zvbi <no-dsa> (Minor issue)
+	[bullseye] - zvbi <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://github.com/zapping-vbi/zvbi/security/advisories/GHSA-g7cg-7gw9-v8cf
 	NOTE: https://github.com/zapping-vbi/zvbi/commit/8def647eea27f7fd7ad33ff79c2d6d3e39948dce (v0.2.44)
 CVE-2025-2169 (The The WPCS \u2013 WordPress Currency Switcher Professional plugin fo ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5d7dd0fc3386954d4fff440b98c4a045643a8336

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5d7dd0fc3386954d4fff440b98c4a045643a8336
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250311/e4be6017/attachment.htm>


More information about the debian-security-tracker-commits mailing list