[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 28 09:13:55 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
54791d26 by security tracker role at 2025-05-28T08:13:48+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,9 +1,9 @@
 CVE-2025-5279 (When the Amazon Redshift Python Connector is configured with the Brows ...)
-	TODO: check
+	NOT-FOR-US: Amazon
 CVE-2025-5082 (The WP Attachments plugin for WordPress is vulnerable to Reflected Cro ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-4800 (The MasterStudy LMS Pro plugin for WordPress is vulnerable to arbitrar ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-4009 (The Evertz SVDN 3080ipx-10G is a High Bandwidth Ethernet Switching Fab ...)
 	TODO: check
 CVE-2025-48848
@@ -23,35 +23,35 @@ CVE-2025-48842
 CVE-2025-48841
 	REJECTED
 CVE-2025-47295 (A buffer over-read in Fortinet FortiOS versions 7.4.0 through 7.4.3, v ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2025-47294 (A integer overflow or wraparound in Fortinet FortiOS versions 7.2.0 th ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2025-46777 (A insertion of sensitive information into log file in Fortinet FortiPo ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2025-32440 (NetAlertX is a network, presence scanner and alert framework. Prior to ...)
 	TODO: check
 CVE-2025-2826 (n affected platforms running Arista EOS, ACL policies may not be enfor ...)
-	TODO: check
+	NOT-FOR-US: Arista Networks
 CVE-2025-2796 (On affected platforms with hardware IPSec support running Arista EOS w ...)
-	TODO: check
+	NOT-FOR-US: Arista Networks
 CVE-2025-25251 (An Incorrect Authorization vulnerability [CWE-863] in FortiClient Mac  ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2025-25029 (IBM Security Guardium 12.0 could allow a privileged user to download a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2025-25026 (IBM Security Guardium 12.0 could allow an authenticated user to obtain ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2025-25025 (IBM Security Guardium 12.0 could allow a remote attacker to obtain sen ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2025-24473 (A exposure of sensitive system information to an unauthorized control  ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2025-22252 (A missing authentication for critical function in Fortinet FortiProxy  ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2024-54020 (A missing authorization in Fortinet FortiManager versions 7.2.0 throug ...)
-	TODO: check
+	NOT-FOR-US: Fortinet
 CVE-2024-45094 (IBM DS8900F and DS8A00 Hardware Management Console (HMC)is vulnerable  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2024-11185 (On affected platforms running Arista EOS, ingress traffic on Layer 2 p ...)
-	TODO: check
+	NOT-FOR-US: Arista Networks
 CVE-2023-41839
 	REJECTED
 CVE-2025-27528



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54791d26c0440e7df53f1f711e9257b20a6ca804

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54791d26c0440e7df53f1f711e9257b20a6ca804
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250528/6f40c903/attachment.htm>


More information about the debian-security-tracker-commits mailing list