[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Nov 29 20:13:15 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
33c05663 by security tracker role at 2025-11-29T20:13:05+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2025-6666 (A vulnerability was determined in motogadget mo.lock Ignition Lock up  ...)
+	TODO: check
 CVE-2025-13699
 	- mariadb 1:11.8.5-1
 	[trixie] - mariadb <no-dsa> (Minor issue; requires attacker to already have access to the database)
@@ -156057,6 +156059,7 @@ CVE-2024-39943 (rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UN
 CVE-2024-39937 (supOS 5.0 allows api/image/download?fileName=../ directory traversal f ...)
 	NOT-FOR-US: supOS
 CVE-2024-39936 (An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2. ...)
+	{DLA-4387-1}
 	- qt6-base 6.8.2+dfsg-5 (bug #1076292)
 	[bookworm] - qt6-base <no-dsa> (Minor issue)
 	- qtbase-opensource-src 5.15.13+dfsg-3 (bug #1076293)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/33c056639c74a3a329068f769edbeeff56bc40d6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/33c056639c74a3a329068f769edbeeff56bc40d6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251129/f2a60117/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list