[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Oct 2 10:08:48 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
26ed772c by Salvatore Bonaccorso at 2025-10-02T11:08:24+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -17,11 +17,11 @@ CVE-2025-61850
 CVE-2025-61849
 	REJECTED
 CVE-2025-61692 (VT STUDIO versions 8.53 and prior contain a use after free vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: VT STUDIO
 CVE-2025-61691 (VT STUDIO versions 8.53 and prior contain an out-of-bounds read vulner ...)
-	TODO: check
+	NOT-FOR-US: VT STUDIO
 CVE-2025-61690 (KV STUDIO versions 12.23 and prior contain a buffer underflow vulnerab ...)
-	TODO: check
+	NOT-FOR-US: KV STUDIO
 CVE-2025-61588 (RISC Zero is a zero-knowledge verifiable general computing platform ba ...)
 	TODO: check
 CVE-2025-61587 (Weblate is a web based localization tool. An open redirect exists in v ...)
@@ -41,11 +41,11 @@ CVE-2025-59531 (Argo CD is a declarative, GitOps continuous delivery tool for Ku
 CVE-2025-59337 (Discourse is an open-source community discussion platform. In versions ...)
 	NOT-FOR-US: Discourse
 CVE-2025-58777 (VT Studio versions 8.53 and prior contain an access of uninitialized p ...)
-	TODO: check
+	NOT-FOR-US: VT Studio
 CVE-2025-58776 (KV Studio versions 12.23 and prior contain a stack-based buffer overfl ...)
-	TODO: check
+	NOT-FOR-US: KV Studio
 CVE-2025-58775 (KV STUDIO and VT5-WX15/WX12 contain a stack-based buffer overflow vuln ...)
-	TODO: check
+	NOT-FOR-US: KV STUDIO and VT5-WX15/WX12
 CVE-2025-57389 (A reflected cross-site scripted (XSS) vulnerability in the /admin/syst ...)
 	TODO: check
 CVE-2025-54811 (OpenPLC_V3 has a vulnerability in the enipThread function that occurs  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/26ed772ccbfee4dfeb209ce476d53a31535a5da7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/26ed772ccbfee4dfeb209ce476d53a31535a5da7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251002/c9aaf855/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list