[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Mar 25 20:51:06 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
973d6482 by Salvatore Bonaccorso at 2025-03-25T21:49:54+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -62,17 +62,17 @@ CVE-2025-27147 (The GLPI Inventory Plugin handles various types of tasks for GLP
 CVE-2025-26742 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
 	NOT-FOR-US: WordPress plugin or theme
 CVE-2025-22230 (VMware Tools for Windows contains an authentication bypass vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: VMware Tools for Windows
 CVE-2025-1445 (A vulnerability exists in RTU IEC 61850 client and server functionalit ...)
-	TODO: check
+	NOT-FOR-US: Hitachi Energy
 CVE-2024-58105 (A vulnerability  in the Trend Micro Apex One Security Agent Plug-in Us ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro Apex One Security Agent Plug-in User Interface Manager
 CVE-2024-58104 (A vulnerability  in the Trend Micro Apex One Security Agent Plug-in Us ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro Apex One Security Agent Plug-in User Interface Manager
 CVE-2024-55604 (Appsmith is a platform to build admin panels, internal tools, and dash ...)
-	TODO: check
+	NOT-FOR-US: Appsmith
 CVE-2024-48818 (An issue in IIT Bombay, Mumbai, India Bodhitree of cs101 version allow ...)
-	TODO: check
+	NOT-FOR-US: IIT Bombay, Mumbai, India Bodhitree of cs101
 CVE-2024-42533 (SQL injection vulnerability in the authentication module in Convivance ...)
 	TODO: check
 CVE-2024-31896 (IBM SPSS Statistics26.0, 27.0.1, 28.0.1, and 29.0.2 uses weaker than e ...)
@@ -84,11 +84,11 @@ CVE-2024-13710 (The Estatebud \u2013 Properties & Listings plugin for WordPress
 CVE-2024-13690 (The WP Church Donation plugin for WordPress is vulnerable to Stored Cr ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-12169 (A vulnerability exists in RTU500 IEC 60870-5-104 controlled station fu ...)
-	TODO: check
+	NOT-FOR-US: Hitachi Energy
 CVE-2024-11499 (A vulnerability exists in RTU500 IEC 60870-4-104 controlled station fu ...)
-	TODO: check
+	NOT-FOR-US: Hitachi Energy
 CVE-2024-10037 (A vulnerability exists in the RTU500 web server component that can cau ...)
-	TODO: check
+	NOT-FOR-US: Hitachi Energy
 CVE-2025-2752 (A vulnerability was found in Open Asset Import Library Assimp 5.4.3 an ...)
 	- assimp <unfixed>
 	[bookworm] - assimp <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/973d6482e2d4e27bd6820feaa1bdfab72d0f17c9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/973d6482e2d4e27bd6820feaa1bdfab72d0f17c9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250325/dac438a1/attachment.htm>


More information about the debian-security-tracker-commits mailing list