[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for ruby-saml issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Mar 13 22:04:23 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
cf020464 by Salvatore Bonaccorso at 2025-03-13T23:03:58+01:00
Add Debian bug reference for ruby-saml issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -167,17 +167,17 @@ CVE-2025-2106 (The ArielBrailovsky-ViralAd plugin for WordPress is vulnerable to
CVE-2025-2104 (The Page Builder: Pagelayer \u2013 Drag and Drop website builder plugi ...)
NOT-FOR-US: WordPress plugin
CVE-2025-25293 (ruby-saml provides security assertion markup language (SAML) single si ...)
- - ruby-saml <unfixed>
+ - ruby-saml <unfixed> (bug #1100441)
NOTE: https://github.com/SAML-Toolkits/ruby-saml/security/advisories/GHSA-92rq-c8cf-prrq
NOTE: https://github.com/SAML-Toolkits/ruby-saml/commit/acac9e9cc0b9a507882c614f25d41f8b47be349a (v1.18.0)
NOTE: https://github.com/SAML-Toolkits/ruby-saml/commit/e2da4c6dae7dc01a4d9cd221395140a67e2b3eb1 (v1.12.4)
CVE-2025-25292 (ruby-saml provides security assertion markup language (SAML) single si ...)
- - ruby-saml <unfixed>
+ - ruby-saml <unfixed> (bug #1100441)
NOTE: https://github.com/SAML-Toolkits/ruby-saml/security/advisories/GHSA-754f-8gm6-c4r2
NOTE: https://github.com/SAML-Toolkits/ruby-saml/commit/e9c1cdbd0f9afa467b585de279db0cbd0fb8ae97 (v1.18.0)
NOTE: https://github.com/SAML-Toolkits/ruby-saml/commit/e76c5b36bac40aedbf1ba7ffaaf495be63328cd9 (v1.12.4)
CVE-2025-25291 (ruby-saml provides security assertion markup language (SAML) single si ...)
- - ruby-saml <unfixed>
+ - ruby-saml <unfixed> (bug #1100441)
NOTE: https://github.com/SAML-Toolkits/ruby-saml/security/advisories/GHSA-4vc4-m8qh-g8jm
NOTE: https://github.com/SAML-Toolkits/ruby-saml/commit/e9c1cdbd0f9afa467b585de279db0cbd0fb8ae97 (v1.18.0)
NOTE: https://github.com/SAML-Toolkits/ruby-saml/commit/e76c5b36bac40aedbf1ba7ffaaf495be63328cd9 (v1.12.4)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cf0204649528800f7e808266d99fccd2343497ed
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cf0204649528800f7e808266d99fccd2343497ed
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250313/feb13e50/attachment.htm>
More information about the debian-security-tracker-commits
mailing list