[Git][security-tracker-team/security-tracker][master] new spring issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sun May 18 21:51:41 BST 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3ed0ec45 by Moritz Muehlenhoff at 2025-05-18T22:50:53+02:00
new spring issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -474,7 +474,8 @@ CVE-2025-2306 (An Improper Access Control vulnerability was identified in the fi
 CVE-2025-2305 (A Path traversal vulnerability in the file download functionality was  ...)
 	NOT-FOR-US: SYNCPILOT LIVE CONTRACT
 CVE-2025-22233 (CVE-2024-38820 ensured Locale-independent, lowercase conversion for bo ...)
-	TODO: check
+	- libspring-java <unfixed> (unimportant)
+	NOTE: Only supported for building applications shipped in Debian, see README.Debian.security
 CVE-2025-1975 (A vulnerability in the Ollama server version 0.5.11 allows a malicious ...)
 	- ollama <itp> (bug #1094806)
 CVE-2024-40120 (seaweedfs v3.68 was discovered to contain a SQL injection vulnerabilit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3ed0ec451a70b023b80a44f65fdba1604168a047

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3ed0ec451a70b023b80a44f65fdba1604168a047
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250518/d02ae7b3/attachment.htm>


More information about the debian-security-tracker-commits mailing list