[Git][security-tracker-team/security-tracker][master] new quickjs issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Mar 21 11:05:57 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ae884945 by Moritz Muehlenhoff at 2025-03-21T12:05:20+01:00
new quickjs issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -62,7 +62,9 @@ CVE-2024-44305 (This issue was addressed by removing the vulnerable code. This i
 CVE-2024-44199 (An out-of-bounds read was addressed with improved input validation. Th ...)
 	NOT-FOR-US: Apple
 CVE-2024-13903 (A vulnerability was found in quickjs-ng QuickJS up to 0.8.0. It has be ...)
-	TODO: check
+	- quickjs <unfixed>
+	NOTE: https://github.com/quickjs-ng/quickjs/issues/775
+	NOTE: https://github.com/quickjs-ng/quickjs/commit/99c02eb45170775a9a679c32b45dd4000ea67aff
 CVE-2025-30160 (Redlib is an alternative private front-end to Reddit. A vulnerability  ...)
 	NOT-FOR-US: Redlib
 CVE-2025-2565 (The data exposure vulnerability in Liferay Portal 7.4.0 through 7.4.3. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae88494563c98173cd9ba22564125bcd35772763

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ae88494563c98173cd9ba22564125bcd35772763
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250321/698267f0/attachment.htm>


More information about the debian-security-tracker-commits mailing list