[Git][security-tracker-team/security-tracker][master] Add two more assimp issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue May 5 08:29:01 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bc906e3a by Salvatore Bonaccorso at 2026-05-05T09:17:52+02:00
Add two more assimp issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -319,9 +319,11 @@ CVE-2026-1921 (The Loco Translate plugin for WordPress is vulnerable to Path Tra
 CVE-2026-0073 (In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wir ...)
 	NOT-FOR-US: Android
 CVE-2025-70072 (An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial  ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2465290
 CVE-2025-70071 (An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial  ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2465675
 CVE-2025-67796 (IKUS Rdiffweb before 2.10.5 has an improper authorization flaw that al ...)
 	TODO: check
 CVE-2025-58074 (A privilege escalation vulnerability exists during the installation of ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bc906e3a7f426194f10ad8a22c4073ab725aba1b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bc906e3a7f426194f10ad8a22c4073ab725aba1b
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260505/4e8d2bf6/attachment.htm>


More information about the debian-security-tracker-commits mailing list