[Git][security-tracker-team/security-tracker][master] Update status for CVE-2025-11147, waiting for maintainer confirmation

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Oct 14 20:09:26 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0f66805a by Salvatore Bonaccorso at 2025-10-14T21:08:43+02:00
Update status for CVE-2025-11147, waiting for maintainer confirmation

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5710,10 +5710,9 @@ CVE-2025-11155 (The credentials required to access the device's web server are s
 CVE-2025-11150
 	REJECTED
 CVE-2025-11147 (Reflected cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vuln ...)
-	- apt-cacher-ng 3.7.5-1
-	[bookworm] - apt-cacher-ng <no-dsa> (Minor issue)
+	- apt-cacher-ng <undetermined>
 	NOTE: https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-apt-cacher-ng
-	NOTE: https://salsa.debian.org/blade/apt-cacher-ng/-/commit/b03d9a3ab326aad2538f42d2831b3114b830912b (upstream/3.7.5)
+	TODO: clarifying with reporter and Eduard Bloch on the issue.
 CVE-2025-11146 (Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vuln ...)
 	- apt-cacher-ng 3.7.5-1
 	[bookworm] - apt-cacher-ng <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f66805ab0630ffc9f3fe2c344058b55402d89cc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f66805ab0630ffc9f3fe2c344058b55402d89cc
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251014/d7d9e6e9/attachment.htm>


More information about the debian-security-tracker-commits mailing list