Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
a25d5a4b by security tracker role at 2025-05-13T20:12:25+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,365 @@
+CVE-2025-4660 (A remote code execution vulnerability exists in the Windows 
agent comp ...)
+       TODO: check
+CVE-2025-4658 (Versions of OpenPubkey library prior to 0.10.0  contained a 
vulnerabil ...)
+       TODO: check
+CVE-2025-4649 (Improper Privilege Management vulnerability in Centreon web 
allows Pri ...)
+       TODO: check
+CVE-2025-4648 (Download of Code Without Integrity Check vulnerability in 
Centreon web ...)
+       TODO: check
+CVE-2025-4647 (Improper Neutralization of Input During Web Page Generation 
(XSS or 'C ...)
+       TODO: check
+CVE-2025-4646 (Improper Privilege Management vulnerability in Centreon web 
(API Token ...)
+       TODO: check
+CVE-2025-4428 (Remote Code Execution in API component in Ivanti Endpoint 
Manager Mobi ...)
+       TODO: check
+CVE-2025-4427 (An authentication bypass in the API component of Ivanti 
Endpoint Manag ...)
+       TODO: check
+CVE-2025-47280 (Umbraco Forms is a form builder that integrates with the 
Umbraco conte ...)
+       TODO: check
+CVE-2025-47278 (Flask is a web server gateway interface (WSGI) web application 
framewo ...)
+       TODO: check
+CVE-2025-47276 (Actualizer is a single shell script solution to allow 
developers and e ...)
+       TODO: check
+CVE-2025-47204 (An issue was discovered in post.php in bootstrap-multiselect 
(aka Boot ...)
+       TODO: check
+CVE-2025-46721 (nosurf is cross-site request forgery (CSRF) protection 
middleware for  ...)
+       TODO: check
+CVE-2025-45867 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45866 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45865 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45864 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45863 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45861 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45859 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a buff ...)
+       TODO: check
+CVE-2025-45858 (TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to 
contain a comm ...)
+       TODO: check
+CVE-2025-45857 (EDIMAX CV7428NS v1.20 was discovered to contain a remote code 
executio ...)
+       TODO: check
+CVE-2025-45746 (In ZKT ZKBio CVSecurity 6.4.1_R an unauthenticated attacker 
can craft  ...)
+       TODO: check
+CVE-2025-44831 (EngineerCMS v1.02 through v2.0.5 has a SQL injection 
vulnerability in  ...)
+       TODO: check
+CVE-2025-44039 (CP-XR-DE21-S -4G Router Firmware version 1.031.022 was 
discovered to c ...)
+       TODO: check
+CVE-2025-43557 (Animate versions 24.0.8, 23.0.11 and earlier are affected by 
an Access ...)
+       TODO: check
+CVE-2025-43556 (Animate versions 24.0.8, 23.0.11 and earlier are affected by 
an Intege ...)
+       TODO: check
+CVE-2025-43555 (Animate versions 24.0.8, 23.0.11 and earlier are affected by 
an Intege ...)
+       TODO: check
+CVE-2025-43547 (Bridge versions 15.0.3, 14.1.6 and earlier are affected by an 
Integer  ...)
+       TODO: check
+CVE-2025-43546 (Bridge versions 15.0.3, 14.1.6 and earlier are affected by an 
Integer  ...)
+       TODO: check
+CVE-2025-43545 (Bridge versions 15.0.3, 14.1.6 and earlier are affected by an 
Access o ...)
+       TODO: check
+CVE-2025-41645 (An unauthenticated remote attacker could use a demo account of 
the por ...)
+       TODO: check
+CVE-2025-40628 (SQL injection vulnerability in DomainsPRO 1.2. This 
vulnerability coul ...)
+       TODO: check
+CVE-2025-40583 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40582 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40581 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40580 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40579 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40578 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40577 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40576 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40575 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40574 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40573 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40572 (A vulnerability has been identified in SCALANCE LPE9403 
(6GK5998-3GS00 ...)
+       TODO: check
+CVE-2025-40571 (A vulnerability has been identified in Mendix OIDC SSO (Mendix 
10 comp ...)
+       TODO: check
+CVE-2025-40566 (A vulnerability has been identified in SIMATIC PCS neo V4.1 
(All versi ...)
+       TODO: check
+CVE-2025-40556 (A vulnerability has been identified in BACnet ATEC 550-440 
(All versio ...)
+       TODO: check
+CVE-2025-40555 (A vulnerability has been identified in APOGEE PXC+TALON TC 
Series (BAC ...)
+       TODO: check
+CVE-2025-3916 (CWE-121: Stack-based Buffer Overflowvulnerability existsthat 
could cau ...)
+       TODO: check
+CVE-2025-3757 (Versions of OpenPubkey library prior to 0.10.0  contained a 
vulnerabil ...)
+       TODO: check
+CVE-2025-3744 (Nomad Enterprise (\u201cNomad\u201d) jobs using the policy 
override op ...)
+       TODO: check
+CVE-2025-33025 (A vulnerability has been identified in RUGGEDCOM ROX MX5000 
(All versi ...)
+       TODO: check
+CVE-2025-33024 (A vulnerability has been identified in RUGGEDCOM ROX MX5000 
(All versi ...)
+       TODO: check
+CVE-2025-32917 (Privilege escalation in jar_signature agent plugin in Checkmk 
versions ...)
+       TODO: check
+CVE-2025-32756 (A stack-based buffer overflow vulnerability [CWE-121] in 
Fortinet Fort ...)
+       TODO: check
+CVE-2025-32709 (Use after free in Windows Ancillary Function Driver for 
WinSock allows ...)
+       TODO: check
+CVE-2025-32707 (Out-of-bounds read in Windows NTFS allows an unauthorized 
attacker to  ...)
+       TODO: check
+CVE-2025-32706 (Improper input validation in Windows Common Log File System 
Driver all ...)
+       TODO: check
+CVE-2025-32705 (Out-of-bounds read in Microsoft Office Outlook allows an 
unauthorized  ...)
+       TODO: check
+CVE-2025-32704 (Buffer over-read in Microsoft Office Excel allows an 
unauthorized atta ...)
+       TODO: check
+CVE-2025-32703 (Insufficient granularity of access control in Visual Studio 
allows an  ...)
+       TODO: check
+CVE-2025-32702 (Improper neutralization of special elements used in a command 
('comman ...)
+       TODO: check
+CVE-2025-32701 (Use after free in Windows Common Log File System Driver allows 
an auth ...)
+       TODO: check
+CVE-2025-32469 (A vulnerability has been identified in RUGGEDCOM ROX MX5000 
(All versi ...)
+       TODO: check
+CVE-2025-32454 (A vulnerability has been identified in Teamcenter 
Visualization V14.3  ...)
+       TODO: check
+CVE-2025-31930 (A vulnerability has been identified in IEC 1Ph 7.4kW Child 
socket (8EM ...)
+       TODO: check
+CVE-2025-31929 (A vulnerability has been identified in IEC 1Ph 7.4kW Child 
socket (8EM ...)
+       TODO: check
+CVE-2025-31493 (Kirby is an open-source content management system. A 
vulnerability in  ...)
+       TODO: check
+CVE-2025-30400 (Use after free in Windows DWM allows an authorized attacker to 
elevate ...)
+       TODO: check
+CVE-2025-30397 (Access of resource using incompatible type ('type confusion') 
in Micro ...)
+       TODO: check
+CVE-2025-30394 (Sensitive data storage in improperly locked memory in Remote 
Desktop G ...)
+       TODO: check
+CVE-2025-30393 (Use after free in Microsoft Office Excel allows an 
unauthorized attack ...)
+       TODO: check
+CVE-2025-30388 (Heap-based buffer overflow in Windows Win32K - GRFX allows an 
unauthor ...)
+       TODO: check
+CVE-2025-30387 (Improper limitation of a pathname to a restricted directory 
('path tra ...)
+       TODO: check
+CVE-2025-30386 (Use after free in Microsoft Office allows an unauthorized 
attacker to  ...)
+       TODO: check
+CVE-2025-30385 (Use after free in Windows Common Log File System Driver allows 
an auth ...)
+       TODO: check
+CVE-2025-30384 (Deserialization of untrusted data in Microsoft Office 
SharePoint allow ...)
+       TODO: check
+CVE-2025-30383 (Access of resource using incompatible type ('type confusion') 
in Micro ...)
+       TODO: check
+CVE-2025-30382 (Deserialization of untrusted data in Microsoft Office 
SharePoint allow ...)
+       TODO: check
+CVE-2025-30381 (Out-of-bounds read in Microsoft Office Excel allows an 
unauthorized at ...)
+       TODO: check
+CVE-2025-30379 (Release of invalid pointer or reference in Microsoft Office 
Excel allo ...)
+       TODO: check
+CVE-2025-30378 (Deserialization of untrusted data in Microsoft Office 
SharePoint allow ...)
+       TODO: check
+CVE-2025-30377 (Use after free in Microsoft Office allows an unauthorized 
attacker to  ...)
+       TODO: check
+CVE-2025-30376 (Heap-based buffer overflow in Microsoft Office Excel allows an 
unautho ...)
+       TODO: check
+CVE-2025-30375 (Access of resource using incompatible type ('type confusion') 
in Micro ...)
+       TODO: check
+CVE-2025-30330 (Illustrator versions 29.3, 28.7.5 and earlier are affected by 
a Heap-b ...)
+       TODO: check
+CVE-2025-30329 (Animate versions 24.0.8, 23.0.11 and earlier are affected by a 
NULL Po ...)
+       TODO: check
+CVE-2025-30328 (Animate versions 24.0.8, 23.0.11 and earlier are affected by 
an out-of ...)
+       TODO: check
+CVE-2025-30326 (Photoshop Desktop versions 26.5, 25.12.2 and earlier are 
affected by a ...)
+       TODO: check
+CVE-2025-30325 (Photoshop Desktop versions 26.5, 25.12.2 and earlier are 
affected by a ...)
+       TODO: check
+CVE-2025-30324 (Photoshop Desktop versions 26.5, 25.12.2 and earlier are 
affected by a ...)
+       TODO: check
+CVE-2025-30322 (Substance3D - Painter versions 11.0 and earlier are affected 
by an out ...)
+       TODO: check
+CVE-2025-30320 (InDesign Desktop versions ID19.5.2, ID20.2 and earlier are 
affected by ...)
+       TODO: check
+CVE-2025-30319 (InDesign Desktop versions ID19.5.2, ID20.2 and earlier are 
affected by ...)
+       TODO: check
+CVE-2025-30318 (InDesign Desktop versions ID19.5.2, ID20.2 and earlier are 
affected by ...)
+       TODO: check
+CVE-2025-30310 (Dreamweaver Desktop versions 21.4 and earlier are affected by 
an Acces ...)
+       TODO: check
+CVE-2025-30207 (Kirby is an open-source content management system. A 
vulnerability in  ...)
+       TODO: check
+CVE-2025-30176 (A vulnerability has been identified in SIMATIC PCS neo V4.1 
(All versi ...)
+       TODO: check
+CVE-2025-30175 (A vulnerability has been identified in SIMATIC PCS neo V4.1 
(All versi ...)
+       TODO: check
+CVE-2025-30174 (A vulnerability has been identified in SIMATIC PCS neo V4.1 
(All versi ...)
+       TODO: check
+CVE-2025-30159 (Kirby is an open-source content management system. A 
vulnerability in  ...)
+       TODO: check
+CVE-2025-29979 (Heap-based buffer overflow in Microsoft Office Excel allows an 
unautho ...)
+       TODO: check
+CVE-2025-29978 (Use after free in Microsoft Office PowerPoint allows an 
unauthorized a ...)
+       TODO: check
+CVE-2025-29977 (Use after free in Microsoft Office Excel allows an 
unauthorized attack ...)
+       TODO: check
+CVE-2025-29976 (Improper privilege management in Microsoft Office SharePoint 
allows an ...)
+       TODO: check
+CVE-2025-29975 (Improper link resolution before file access ('link following') 
in Micr ...)
+       TODO: check
+CVE-2025-29974 (Integer underflow (wrap or wraparound) in Windows Kernel 
allows an una ...)
+       TODO: check
+CVE-2025-29973 (Improper access control in Azure File Sync allows an 
authorized attack ...)
+       TODO: check
+CVE-2025-29971 (Out-of-bounds read in Web Threat Defense (WTD.sys) allows an 
unauthori ...)
+       TODO: check
+CVE-2025-29970 (Use after free in Microsoft Brokering File System allows an 
authorized ...)
+       TODO: check
+CVE-2025-29969 (Time-of-check time-of-use (toctou) race condition in Windows 
Fundament ...)
+       TODO: check
+CVE-2025-29968 (Improper input validation in Active Directory Certificate 
Services (AD ...)
+       TODO: check
+CVE-2025-29967 (Heap-based buffer overflow in Remote Desktop Gateway Service 
allows an ...)
+       TODO: check
+CVE-2025-29966 (Heap-based buffer overflow in Windows Remote Desktop allows an 
unautho ...)
+       TODO: check
+CVE-2025-29964 (Heap-based buffer overflow in Windows Media allows an 
unauthorized att ...)
+       TODO: check
+CVE-2025-29963 (Heap-based buffer overflow in Windows Media allows an 
unauthorized att ...)
+       TODO: check
+CVE-2025-29962 (Heap-based buffer overflow in Windows Media allows an 
unauthorized att ...)
+       TODO: check
+CVE-2025-29961 (Out-of-bounds read in Windows Routing and Remote Access 
Service (RRAS) ...)
+       TODO: check
+CVE-2025-29960 (Out-of-bounds read in Windows Routing and Remote Access 
Service (RRAS) ...)
+       TODO: check
+CVE-2025-29959 (Use of uninitialized resource in Windows Routing and Remote 
Access Ser ...)
+       TODO: check
+CVE-2025-29958 (Use of uninitialized resource in Windows Routing and Remote 
Access Ser ...)
+       TODO: check
+CVE-2025-29957 (Uncontrolled resource consumption in Windows Deployment 
Services allow ...)
+       TODO: check
+CVE-2025-29956 (Buffer over-read in Windows SMB allows an authorized attacker 
to discl ...)
+       TODO: check
+CVE-2025-29955 (Improper input validation in Windows Hyper-V allows an 
unauthorized at ...)
+       TODO: check
+CVE-2025-29954 (Uncontrolled resource consumption in Windows LDAP - 
Lightweight Direct ...)
+       TODO: check
+CVE-2025-29842 (Acceptance of extraneous untrusted data with trusted data in 
UrlMon al ...)
+       TODO: check
+CVE-2025-29841 (Concurrent execution using shared resource with improper 
synchronizati ...)
+       TODO: check
+CVE-2025-29840 (Stack-based buffer overflow in Windows Media allows an 
unauthorized at ...)
+       TODO: check
+CVE-2025-29839 (Out-of-bounds read in Windows File Server allows an 
unauthorized attac ...)
+       TODO: check
+CVE-2025-29838 (Null pointer dereference in Windows Drivers allows an 
unauthorized att ...)
+       TODO: check
+CVE-2025-29837 (Improper link resolution before file access ('link following') 
in Wind ...)
+       TODO: check
+CVE-2025-29836 (Out-of-bounds read in Windows Routing and Remote Access 
Service (RRAS) ...)
+       TODO: check
+CVE-2025-29835 (Out-of-bounds read in Windows Routing and Remote Access 
Service (RRAS) ...)
+       TODO: check
+CVE-2025-29833 (Time-of-check time-of-use (toctou) race condition in Windows 
Virtual M ...)
+       TODO: check
+CVE-2025-29832 (Out-of-bounds read in Windows Routing and Remote Access 
Service (RRAS) ...)
+       TODO: check
+CVE-2025-29831 (Use after free in Remote Desktop Gateway Service allows an 
unauthorize ...)
+       TODO: check
+CVE-2025-29830 (Use of uninitialized resource in Windows Routing and Remote 
Access Ser ...)
+       TODO: check
+CVE-2025-29829 (Use of uninitialized resource in Windows Trusted Runtime 
Interface Dri ...)
+       TODO: check
+CVE-2025-29826 (Improper handling of insufficient permissions or privileges in 
Microso ...)
+       TODO: check
+CVE-2025-28057 (owl-admin v3.2.2~ to v4.10.2 is vulnerable to SQL Injection in 
/admin- ...)
+       TODO: check
+CVE-2025-28056 (rebuild v3.9.0 through v3.9.3 has a SQL injection 
vulnerability in /ad ...)
+       TODO: check
+CVE-2025-28055 (upset-gal-web v7.1.0 /api/music/v1/cover.ts contains an 
arbitrary file ...)
+       TODO: check
+CVE-2025-27696 (Improper Authorization vulnerability in Apache Superset allows 
ownersh ...)
+       TODO: check
+CVE-2025-27488 (Use of hard-coded credentials in Windows Hardware Lab Kit 
allows an au ...)
+       TODO: check
+CVE-2025-27468 (Improper privilege management in Windows Secure Kernel Mode 
allows an  ...)
+       TODO: check
+CVE-2025-27197 (Lightroom Desktop versions 8.2 and earlier are affected by an 
out-of-b ...)
+       TODO: check
+CVE-2025-26685 (Improper authentication in Microsoft Defender for Identity 
allows an u ...)
+       TODO: check
+CVE-2025-26684 (External control of file name or path in Microsoft Defender 
for Endpoi ...)
+       TODO: check
+CVE-2025-26677 (Uncontrolled resource consumption in Remote Desktop Gateway 
Service al ...)
+       TODO: check
+CVE-2025-26390 (A vulnerability has been identified in OZW672 (All versions < 
V6.0), O ...)
+       TODO: check
+CVE-2025-26389 (A vulnerability has been identified in OZW672 (All versions < 
V8.0), O ...)
+       TODO: check
+CVE-2025-24510 (A vulnerability has been identified in MS/TP Point Pickup 
Module (All  ...)
+       TODO: check
+CVE-2025-24063 (Heap-based buffer overflow in Windows Kernel allows an 
authorized atta ...)
+       TODO: check
+CVE-2025-24009 (A vulnerability has been identified in SIRIUS 3RK3 Modular 
Safety Syst ...)
+       TODO: check
+CVE-2025-24008 (A vulnerability has been identified in SIRIUS 3RK3 Modular 
Safety Syst ...)
+       TODO: check
+CVE-2025-24007 (A vulnerability has been identified in SIRIUS 3RK3 Modular 
Safety Syst ...)
+       TODO: check
+CVE-2025-22859 (ARelative Path Traversal vulnerability [CWE-23] in 
FortiClientEMS 7.4. ...)
+       TODO: check
+CVE-2025-22462 (An authentication bypass in Ivanti Neurons for ITSM (on-prem 
only) bef ...)
+       TODO: check
+CVE-2025-22460 (Default credentials in Ivanti Cloud Services Application 
before versio ...)
+       TODO: check
+CVE-2025-22248 (The bitnami/pgpoolDocker image, and the bitnami/postgres-hak8s 
chart,  ...)
+       TODO: check
+CVE-2025-21264 (Files or directories accessible to external parties in Visual 
Studio C ...)
+       TODO: check
+CVE-2025-0035 (Unquoted search path within AMD Cloud Manageability Service can 
allow  ...)
+       TODO: check
+CVE-2024-6364 (A vulnerability in Absolute Persistence\xae versions before 2.8 
exists ...)
+       TODO: check
+CVE-2024-56526 (An issue was discovered in OXID eShop before 7. CMS pages in 
combinati ...)
+       TODO: check
+CVE-2024-51447 (A vulnerability has been identified in Polarion V2310 (All 
versions),  ...)
+       TODO: check
+CVE-2024-51446 (A vulnerability has been identified in Polarion V2310 (All 
versions),  ...)
+       TODO: check
+CVE-2024-51445 (A vulnerability has been identified in Polarion V2310 (All 
versions),  ...)
+       TODO: check
+CVE-2024-51444 (A vulnerability has been identified in Polarion V2310 (All 
versions),  ...)
+       TODO: check
+CVE-2024-48766 (NetAlertX 24.7.18 before 24.10.12 allows unauthenticated file 
reading  ...)
+       TODO: check
+CVE-2024-46506 (NetAlertX 23.01.14 through 24.x before 24.10.12 allows 
unauthenticated ...)
+       TODO: check
+CVE-2024-42446 (APTIOV contains a vulnerability in BIOS where an attacker may 
cause a  ...)
+       TODO: check
+CVE-2024-36340 (A  junction point vulnerability within AMD uProf can allow a 
local low ...)
+       TODO: check
+CVE-2024-36339 (A DLL hijacking vulnerability in the AMD Optimizing CPU 
Libraries coul ...)
+       TODO: check
+CVE-2024-36321 (Unquoted search path within AIM-T Manageability Service can 
allow a lo ...)
+       TODO: check
+CVE-2024-35281 (An improper isolation or compartmentalization vulnerability 
[CWE-653]  ...)
+       TODO: check
+CVE-2024-23815 (A vulnerability has been identified in Desigo CC (All versions 
if acce ...)
+       TODO: check
+CVE-2024-21960 (Incorrect default permissions in the AMD Optimizing CPU 
Libraries (AOC ...)
+       TODO: check
+CVE-2024-12533 (Improper Check for Unusual or Exceptional Conditions 
vulnerability in  ...)
+       TODO: check
+CVE-2023-31359 (Incorrect default permissions in the AMD Manageability API 
could allow ...)
+       TODO: check
+CVE-2023-31358 (A DLL hijacking vulnerability in the AMD Manageability API 
could allow ...)
+       TODO: check
 CVE-2025-4632 (Improper limitation of a pathname to a restricted directory 
vulnerabil ...)
        NOT-FOR-US: Samsung
 CVE-2025-4474 (The Frontend Dashboard plugin for WordPress is vulnerable to 
Privilege ...)
@@ -760,7 +1122,7 @@ CVE-2025-29972 (Server-Side Request Forgery (SSRF) in 
Azure allows an authorized
        NOT-FOR-US: Microsoft
 CVE-2025-29827 (Improper Authorization in Azure Automation allows an 
authorized attack ...)
        NOT-FOR-US: Microsoft
-CVE-2025-29813 (An elevation of privilege vulnerability exists when Visual 
Studio impr ...)
+CVE-2025-29813 ([Spoofable identity claims] Authentication Bypass by 
Assumed-Immutable ...)
        NOT-FOR-US: Microsoft
 CVE-2025-29509 (Jan v0.5.14 and before is vulnerable to remote code execution 
(RCE) wh ...)
        NOT-FOR-US: Jan
@@ -49846,7 +50208,7 @@ CVE-2024-49132 (Windows Remote Desktop Services Remote 
Code Execution Vulnerabil
        NOT-FOR-US: Microsoft
 CVE-2024-49129 (Windows Remote Desktop Gateway (RD Gateway) Denial of Service 
Vulnerab ...)
        NOT-FOR-US: Microsoft
-CVE-2024-49128 (Windows Remote Desktop Services Remote Code Execution 
Vulnerability)
+CVE-2024-49128 (Sensitive data storage in improperly locked memory in Windows 
Remote D ...)
        NOT-FOR-US: Microsoft
 CVE-2024-49127 (Windows Lightweight Directory Access Protocol (LDAP) Remote 
Code Execu ...)
        NOT-FOR-US: Microsoft
@@ -331613,7 +331975,7 @@ CVE-2021-31897 (In JetBrains WebStorm before 2021.1, 
code execution without user
        NOT-FOR-US: JetBrains
 CVE-2021-31896
        RESERVED
-CVE-2021-31895 (A vulnerability has been identified in RUGGEDCOM ROS M2100 
(All versio ...)
+CVE-2021-31895 (A vulnerability has been identified in RUGGEDCOM i800 (All 
versions <  ...)
        NOT-FOR-US: Siemens
 CVE-2021-31894 (A vulnerability has been identified in SIMATIC PCS 7 V8.2 and 
earlier  ...)
        NOT-FOR-US: Siemens



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a25d5a4b0682ac0ecf97638b4898c367c4d1450b

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a25d5a4b0682ac0ecf97638b4898c367c4d1450b
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to