[Git][security-tracker-team/security-tracker][master] Add CVE-2025-32898
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Nov 28 16:09:04 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b5d31677 by Salvatore Bonaccorso at 2025-11-28T17:08:33+01:00
Add CVE-2025-32898
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -265,6 +265,14 @@ CVE-2025-66270
[bullseye] - kdeconnect <not-affected> (Vulnerable code not present)
NOTE: Fixed by: https://invent.kde.org/network/kdeconnect-kde/-/commit/1d757349d0f517ef12c119565ffb1f79503fbcdf
NOTE: Introduced by: https://invent.kde.org/network/kdeconnect-kde/-/commit/98256fda3dfdf50edd7555f21cba46fd1e596523 (v25.03.80)
+CVE-2025-32898
+ - kdeconnect 25.04.0-1
+ [bookworm] - kdeconnect <ignored> (Minor issue, design limitation of protocol version prior to 8)
+ - gnome-shell-extension-gsconnect 62-1
+ [bookworm] - gnome-shell-extension-gsconnect <ignored> (Minor issue, design limitation of protocol version prior to 8)
+ NOTE: https://kde.org/info/security/advisory-20250418-3.txt
+ NOTE: Fixed by: https://invent.kde.org/network/kdeconnect-kde/-/commit/98256fda3dfdf50edd7555f21cba46fd1e596523 (v25.03.80)
+ NOTE: Fixed by: https://github.com/GSConnect/gnome-shell-extension-gsconnect/commit/cf099c63c7981e69bd095fcbe3215cf87b5328f8 (v59)
CVE-2025-9191 (The Houzez theme for WordPress is vulnerable to PHP Object Injection i ...)
NOT-FOR-US: WordPress plugin
CVE-2025-9163 (The Houzez theme for WordPress is vulnerable to Stored Cross-Site Scri ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b5d31677b8630002a1ebd2b3a1a2a05009acd021
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b5d31677b8630002a1ebd2b3a1a2a05009acd021
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251128/5193163e/attachment.htm>
More information about the debian-security-tracker-commits
mailing list