[Git][security-tracker-team/security-tracker][master] Update information on CVE-2025-48734

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 28 22:25:03 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
11d5721b by Salvatore Bonaccorso at 2025-05-28T23:24:37+02:00
Update information on CVE-2025-48734

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -77,8 +77,10 @@ CVE-2024-47055 (SummaryThis advisory addresses a security vulnerability in Mauti
 CVE-2024-38341 (IBM Sterling Secure Proxy 6.0.0.0 through 6.0.3.1, 6.1.0.0 through 6.1 ...)
 	NOT-FOR-US: IBM
 CVE-2025-48734 (Improper Access Control vulnerability in Apache Commons.    A special  ...)
-	- commons-beanutils 1.10.1-1
+	- commons-beanutils <unfixed>
 	NOTE: https://www.openwall.com/lists/oss-security/2025/05/28/6
+	NOTE: https://dlcdn.apache.org/commons/beanutils/RELEASE-NOTES.txt
+	NOTE: Fixed upstream in 1.11.0
 CVE-2025-32801 (Kea configuration and API directives can be used to load a malicious h ...)
 	- isc-kea <unfixed>
 	NOTE: https://kb.isc.org/docs/cve-2025-32801



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11d5721b5179713a3c3e95022382871a1727505e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11d5721b5179713a3c3e95022382871a1727505e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250528/68f98f89/attachment.htm>


More information about the debian-security-tracker-commits mailing list