[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Sun Oct 19 22:42:38 BST 2025
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
77a8b65a by Moritz Muehlenhoff at 2025-10-19T23:42:19+02:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,13 +1,13 @@
CVE-2025-11944 (A vulnerability was determined in givanz Vvveb up to 1.0.7.3. This aff ...)
- TODO: check
+ NOT-FOR-US: givanz Vvveb
CVE-2025-11943 (A vulnerability has been found in 70mai X200 up to 20251010. Affected ...)
- TODO: check
+ NOT-FOR-US: 70mai X200
CVE-2025-11942 (A flaw has been found in 70mai X200 up to 20251010. Affected is an unk ...)
- TODO: check
+ NOT-FOR-US: 70mai X200
CVE-2025-11941 (A vulnerability was detected in e107 CMS up to 2.3.3. This impacts an ...)
- TODO: check
+ NOT-FOR-US: e107 CMS
CVE-2025-11940 (A security vulnerability has been detected in LibreWolf up to 143.0.4- ...)
- TODO: check
+ NOT-FOR-US: LibreWolf
CVE-2025-62672 (rplay through 3.3.2 allows attackers to cause a denial of service (SIG ...)
- rplay <unfixed> (bug #1118224)
NOTE: https://www.openwall.com/lists/oss-security/2025/10/17/3
@@ -362,7 +362,7 @@ CVE-2025-62490 (In quickjs, in js_print_object, when printing an array, the func
CVE-2025-62428 (Drawing-Captcha APP provides interactive, engaging verification for We ...)
NOT-FOR-US: Drawing-Captcha APP
CVE-2025-62427 (The Angular SSR is a server-rise rendering tool for Angular applicatio ...)
- TODO: check
+ NOT-FOR-US: Angular SSR
CVE-2025-62425 (MAS (Matrix Authentication Service) is a user management and authentic ...)
NOT-FOR-US: MAS (Matrix Authentication Service)
CVE-2025-62423 (ClipBucket V5 provides open source video hosting with PHP. In version5 ...)
@@ -476,7 +476,7 @@ CVE-2025-54760 (Stored cross-site scripting (XSS) vulnerability in desknet's NEO
CVE-2025-54658 (An Improper Limitation of a Pathname to a Restricted Directory ('Path ...)
NOT-FOR-US: Fortinet
CVE-2025-54539 (A Deserialization of Untrusted Data vulnerability exists in the Apache ...)
- TODO: check
+ NOT-FOR-US: Apache ActiveMQ NMS AMQP Client
CVE-2025-54499 (Mattermost versions 10.5.x <= 10.5.10, 10.11.x <= 10.11.2 fail to use ...)
- mattermost-server <itp> (bug #823556)
CVE-2025-54461 (ChatLuck contains an insufficient granularity of access control vulner ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/77a8b65ae98bcb0fcd4d926942561583eae1c24b
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/77a8b65ae98bcb0fcd4d926942561583eae1c24b
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251019/a109ac4e/attachment.htm>
More information about the debian-security-tracker-commits
mailing list