[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Sep 25 14:34:25 BST 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2659182f by Moritz Muehlenhoff at 2025-09-25T15:33:54+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -128,9 +128,9 @@ CVE-2025-47315 (Memory corruption while handling repeated memory unmap requests
 CVE-2025-47314 (Memory corruption while processing data sent by FE driver.)
 	NOT-FOR-US: Qualcomm
 CVE-2025-41716 (The web application allows an unauthenticated remote attacker to learn ...)
-	TODO: check
+	NOT-FOR-US: WAGO
 CVE-2025-41715 (The database for the web application is exposed without authentication ...)
-	TODO: check
+	NOT-FOR-US: WAGO
 CVE-2025-27077 (Memory corruption while processing message in guest VM.)
 	NOT-FOR-US: Qualcomm
 CVE-2025-27037 (Memory corruption while processing config_dev IOCTL when camera kernel ...)
@@ -222,13 +222,13 @@ CVE-2025-21481 (Memory corruption while performing private key encryption in tru
 CVE-2025-21476 (Memory corruption when passing parameters to the Trusted Virtual Machi ...)
 	NOT-FOR-US: Qualcomm
 CVE-2025-20365 (A vulnerability in the IPv6 Router Advertisement (RA) packet processin ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2025-20364 (A vulnerability in the Device Analytics action frame processing of Cis ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2025-20352 (A vulnerability in the Simple Network Management Protocol (SNMP) subsy ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2025-20339 (A vulnerability in the access control list (ACL) processing of IPv4 pa ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2025-20338 (A vulnerability in the CLI of Cisco IOS XE Software could allow an aut ...)
 	NOT-FOR-US: Cisco
 CVE-2025-20334 (A vulnerability in the HTTP API subsystem of Cisco IOS XE Software cou ...)
@@ -252,13 +252,13 @@ CVE-2025-20293 (A vulnerability in the Day One setup process of Cisco IOS XE Sof
 CVE-2025-20240 (A vulnerability in the web UI of Cisco IOS XE Software could allow an  ...)
 	NOT-FOR-US: Cisco
 CVE-2025-20160 (A vulnerability in the implementation of the TACACS+ protocol in Cisco ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2025-20149 (A vulnerability in the CLI of Cisco IOS Software and Cisco IOS XE Soft ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2025-10909 (A security flaw has been discovered in Mangati NovoSGA up to 2.2.9. Th ...)
-	TODO: check
+	NOT-FOR-US: Mangati NovoSGA
 CVE-2025-10906 (A flaw has been found in Magnetism Studios Endurance up to 3.3.0 on ma ...)
-	TODO: check
+	NOT-FOR-US: Magnetism Studios Endurance
 CVE-2025-10360 (In Puppet Enterprise versions 2025.4.0 and 2025.5, the encryption key  ...)
 	TODO: check
 CVE-2025-39890 (In the Linux kernel, the following vulnerability has been resolved:  w ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2659182fb5d0358c1d4416be26c7c94d9af7279b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2659182fb5d0358c1d4416be26c7c94d9af7279b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250925/d150a0ef/attachment.htm>


More information about the debian-security-tracker-commits mailing list