[Git][security-tracker-team/security-tracker][master] trixie/bookworm triage
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Mon Nov 3 22:11:01 GMT 2025
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
608cf988 by Moritz Muehlenhoff at 2025-11-03T23:10:49+01:00
trixie/bookworm triage
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -249,7 +249,9 @@ CVE-2025-6176 (Scrapy versions up to 2.13.2 are vulnerable to a denial of servic
CVE-2025-6075 (If the value passed to os.path.expandvars() is user-controlled a perf ...)
- python3.14 <unfixed>
- python3.13 <unfixed>
+ [trixie] - python3.13 <no-dsa> (Minor issue)
- python3.11 <removed>
+ [bookworm] - python3.11 <no-dsa> (Minor issue)
- python3.9 <removed>
- pypy3 <unfixed>
[trixie] - pypy3 <no-dsa> (Minor issue)
@@ -1338,18 +1340,26 @@ CVE-2025-61128 (Stack-based buffer overflow vulnerability in WAVLINK QUANTUM D3G
NOT-FOR-US: Wavlink
CVE-2025-61107 (FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NU ...)
- frr <unfixed> (bug #1119292)
+ [trixie] - frr <postponed> (Minor issue, revisit when fixed upstream)
+ [bookworm] - frr <postponed> (Minor issue, revisit when fixed upstream)
NOTE: https://github.com/FRRouting/frr/issues/19471
NOTE: https://github.com/FRRouting/frr/pull/19480
CVE-2025-61106 (FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NU ...)
- frr <unfixed> (bug #1119292)
+ [trixie] - frr <postponed> (Minor issue, revisit when fixed upstream)
+ [bookworm] - frr <postponed> (Minor issue, revisit when fixed upstream)
NOTE: https://github.com/FRRouting/frr/issues/19471
NOTE: https://github.com/FRRouting/frr/pull/19480
CVE-2025-61104 (FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NU ...)
- frr <unfixed> (bug #1119292)
+ [trixie] - frr <postponed> (Minor issue, revisit when fixed upstream)
+ [bookworm] - frr <postponed> (Minor issue, revisit when fixed upstream)
NOTE: https://github.com/FRRouting/frr/issues/19471
NOTE: https://github.com/FRRouting/frr/pull/19480
CVE-2025-61103 (FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NU ...)
- frr <unfixed> (bug #1119292)
+ [trixie] - frr <postponed> (Minor issue, revisit when fixed upstream)
+ [bookworm] - frr <postponed> (Minor issue, revisit when fixed upstream)
NOTE: https://github.com/FRRouting/frr/issues/19471
NOTE: https://github.com/FRRouting/frr/pull/19480
CVE-2025-61080 (A reflected Cross-Site Scripting (XSS) vulnerability has been identifi ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/608cf988e635cd5c76201ed69ac9376c1b7dc247
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/608cf988e635cd5c76201ed69ac9376c1b7dc247
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251103/3f8dbeeb/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list