Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 5f3ed12e by Salvatore Bonaccorso at 2025-07-23T09:15:32+02:00 Associate CVE-2025-53603 with scope (where the vulnerable code lives) - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -5381,7 +5381,7 @@ CVE-2025-53605 (The protobuf crate before 3.7.2 for Rust allows uncontrolled rec CVE-2025-53604 (The web-push crate before 0.10.3 for Rust allows a denial of service ( ...) NOT-FOR-US: web-push Rust crate CVE-2025-53603 (In Alinto SOPE SOGo 2.0.2 through 5.12.2, sope-core/NGExtensions/NGHas ...) - - sogo <unfixed> (bug #1108798) + - sope <unfixed> (bug #1108798) NOTE: https://www.openwall.com/lists/oss-security/2025/07/02/3 NOTE: https://github.com/Alinto/sope/pull/69 CVE-2025-53602 (Zipkin through 3.5.1 has a /heapdump endpoint (associated with the use ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5f3ed12ec55cdbe2e59a061477c5b1616ab7fdb2 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5f3ed12ec55cdbe2e59a061477c5b1616ab7fdb2 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits