[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Sep 1 09:12:06 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f806be0e by security tracker role at 2025-09-01T08:11:58+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,79 @@
+CVE-2025-9768 (A vulnerability was identified in itsourcecode Sports Management Syste ...)
+	TODO: check
+CVE-2025-9767 (A vulnerability was determined in itsourcecode Sports Management Syste ...)
+	TODO: check
+CVE-2025-9766 (A vulnerability was found in itsourcecode Sports Management System 1.0 ...)
+	TODO: check
+CVE-2025-9765 (A vulnerability has been found in itsourcecode Sports Management Syste ...)
+	TODO: check
+CVE-2025-9764 (A flaw has been found in itsourcecode Sports Management System 1.0. Im ...)
+	TODO: check
+CVE-2025-9763 (A vulnerability was detected in Campcodes Online Learning Management S ...)
+	TODO: check
+CVE-2025-9761 (A security vulnerability has been detected in Campcodes Online Feeds P ...)
+	TODO: check
+CVE-2025-9760 (A weakness has been identified in Portabilis i-Educar up to 2.10. This ...)
+	TODO: check
+CVE-2025-9759 (A security flaw has been discovered in Campcodes/SourceCodester Courie ...)
+	TODO: check
+CVE-2025-9758 (A vulnerability was identified in deepakmisal24 Chemical Inventory Man ...)
+	TODO: check
+CVE-2025-9757 (A vulnerability was determined in Campcodes/SourceCodester Courier Man ...)
+	TODO: check
+CVE-2025-9756 (A vulnerability was found in PHPGurukul User Management System 1.0. Th ...)
+	TODO: check
+CVE-2025-9755 (A vulnerability has been found in Khanakag-17 Library Management Syste ...)
+	TODO: check
+CVE-2025-9754 (A flaw has been found in Campcodes Online Hospital Management System 1 ...)
+	TODO: check
+CVE-2025-9753 (A vulnerability was detected in Campcodes Online Hospital Management S ...)
+	TODO: check
+CVE-2025-9752 (A security vulnerability has been detected in D-Link DIR-852 1.00CN B0 ...)
+	TODO: check
+CVE-2025-9751 (A weakness has been identified in Campcodes Online Learning Management ...)
+	TODO: check
+CVE-2025-9750 (A security flaw has been discovered in Campcodes Online Learning Manag ...)
+	TODO: check
+CVE-2025-9749 (A vulnerability was identified in HKritesh009 Grocery List Management  ...)
+	TODO: check
+CVE-2025-9748 (A vulnerability was determined in Tenda CH22 1.0.0.1. Affected by this ...)
+	TODO: check
+CVE-2025-9747 (A vulnerability has been found in Koillection up to 1.6.18. Affected i ...)
+	TODO: check
+CVE-2025-9746 (A vulnerability was detected in Campcodes Hospital Management System 1 ...)
+	TODO: check
+CVE-2025-9745 (A security vulnerability has been detected in D-Link DI-500WF 14.04.10 ...)
+	TODO: check
+CVE-2025-9570 (The eHRD CTMS developed by Sunnet has an Arbitrary File Reading vulner ...)
+	TODO: check
+CVE-2025-9569 (The eHRD developed by Sunnet has a Reflected Cross-site Scripting vuln ...)
+	TODO: check
+CVE-2025-9568 (The eHRD developed by Sunnet has a Reflected Cross-site Scripting vuln ...)
+	TODO: check
+CVE-2025-9567 (The eHRD developed by Sunnet has a Reflected Cross-site Scripting vuln ...)
+	TODO: check
+CVE-2025-7731 (Cleartext Transmission of Sensitive Information vulnerability in Mitsu ...)
+	TODO: check
+CVE-2025-7405 (Missing Authentication for Critical Function vulnerability in Mitsubis ...)
+	TODO: check
+CVE-2025-6507 (A vulnerability in the h2oai/h2o-3 repository allows attackers to expl ...)
+	TODO: check
+CVE-2025-58318 (Delta Electronics DIAView has an authentication bypass vulnerability.)
+	TODO: check
+CVE-2025-54857 (Improper neutralization of special elements used in an OS command ('OS ...)
+	TODO: check
+CVE-2025-20708 (In Modem, there is a possible out of bounds write due to an incorrect  ...)
+	TODO: check
+CVE-2025-20707 (In geniezone, there is a possible memory corruption due to use after f ...)
+	TODO: check
+CVE-2025-20706 (In mbrain, there is a possible memory corruption due to use after free ...)
+	TODO: check
+CVE-2025-20705 (In monitor_hang, there is a possible memory corruption due to use afte ...)
+	TODO: check
+CVE-2025-20704 (In Modem, there is a possible out of bounds write due to a missing bou ...)
+	TODO: check
+CVE-2025-20703 (In Modem, there is a possible out of bounds read due to an incorrect b ...)
+	TODO: check
 CVE-2025-9744 (A weakness has been identified in Campcodes Online Loan Management Sys ...)
 	NOT-FOR-US: Campcodes
 CVE-2025-9743 (A security flaw has been discovered in code-projects Human Resource In ...)
@@ -96583,6 +96659,7 @@ CVE-2024-50613 (libsndfile through 1.2.2 has a reachable assertion, that may lea
 	NOTE: in the packaging since debian/1.1.0-1 (starting in bookworm) with
 	NOTE: https://salsa.debian.org/multimedia-team/libsndfile/-/commit/ef6944427e1e4b39f634bfb3af2ddc6071810aaa
 CVE-2024-50612 (libsndfile through 1.2.2 has an ogg_vorbis.c vorbis_analysis_wrote out ...)
+	{DLA-4287-1}
 	- libsndfile 1.2.2-2 (bug #1088692)
 	[bookworm] - libsndfile <no-dsa> (Minor issue)
 	NOTE: https://github.com/libsndfile/libsndfile/issues/1035
@@ -273987,18 +274064,18 @@ CVE-2022-38698 (In messaging service, there is a missing permission check. This
 	NOT-FOR-US: Unisoc
 CVE-2022-38697 (In messaging service, there is a missing permission check. This could  ...)
 	NOT-FOR-US: Unisoc
-CVE-2022-38696
-	RESERVED
-CVE-2022-38695
-	RESERVED
-CVE-2022-38694
-	RESERVED
-CVE-2022-38693
-	RESERVED
-CVE-2022-38692
-	RESERVED
-CVE-2022-38691
-	RESERVED
+CVE-2022-38696 (In BootRom, there's a possible missing payload size check. This could  ...)
+	TODO: check
+CVE-2022-38695 (In BootRom, there's a possible unchecked command index. This could lea ...)
+	TODO: check
+CVE-2022-38694 (In BootRom, there is a possible unchecked write address. This could le ...)
+	TODO: check
+CVE-2022-38693 (In FDL1, there is a possible missing payload size check. This could le ...)
+	TODO: check
+CVE-2022-38692 (In BootROM, there is a missing size check for RSA keys in Certificate  ...)
+	TODO: check
+CVE-2022-38691 (In BootROM, there is a possible missing validation for Certificate Typ ...)
+	TODO: check
 CVE-2022-38690 (In camera driver, there is a possible memory corruption due to imprope ...)
 	NOT-FOR-US: Unisoc
 CVE-2022-38689 (In telephony service, there is a missing permission check. This could  ...)
@@ -289446,6 +289523,7 @@ CVE-2022-33067 (Lrzip v0.651 was discovered to contain multiple invalid arithmet
 CVE-2022-33066
 	RESERVED
 CVE-2022-33065 (Multiple signed integers overflow in function au_read_header in src/au ...)
+	{DLA-4287-1}
 	- libsndfile 1.2.2-2 (bug #1051891)
 	[bookworm] - libsndfile <no-dsa> (Minor issue)
 	[buster] - libsndfile <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f806be0e8d5c38cc82c7a50e61573dd707d698fd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f806be0e8d5c38cc82c7a50e61573dd707d698fd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250901/415f01ce/attachment.htm>


More information about the debian-security-tracker-commits mailing list