Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
3c56c271 by Salvatore Bonaccorso at 2025-12-06T21:02:41+01:00
Update status for CVE-2025-12084/python

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1093,8 +1093,8 @@ CVE-2025-12385 (Allocation of Resources Without Limits or 
Throttling, Improper V
 CVE-2025-12358 (The ShopEngine Elementor WooCommerce Builder Addon plugin for 
WordPres ...)
        NOT-FOR-US: WordPress plugin
 CVE-2025-12084 (When building nested elements using xml.dom.minidom methods 
such as ap ...)
-       - python3.14 <unfixed>
-       - python3.13 <unfixed>
+       - python3.14 3.14.2-1
+       - python3.13 3.13.11-1
        [trixie] - python3.13 <no-dsa> (Minor issue)
        - python3.11 <removed>
        [bookworm] - python3.11 <no-dsa> (Minor issue)
@@ -1109,6 +1109,8 @@ CVE-2025-12084 (When building nested elements using 
xml.dom.minidom methods such
        NOTE: https://github.com/python/cpython/pull/142146
        NOTE: https://github.com/python/cpython/issues/142145
        NOTE: Fixed by: 
https://github.com/python/cpython/commit/08d8e18ad81cd45bc4a27d6da478b51ea49486e4
 (main)
+       NOTE: Fixed by: 
https://github.com/python/cpython/commit/027f21e417b26eed4505ac2db101a4352b7c51a0
 (v3.14.2)
+       NOTE: Fixed by: 
https://github.com/python/cpython/commit/ddcd2acd85d891a53e281c773b3093f9db953964
 (v3.13.11)
 CVE-2024-3884 (A flaw was found in Undertow that can cause remote denial of 
service a ...)
        - undertow <undetermined>
        NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2275287



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3c56c271cb213693e1ebc1c3dbea23e4ec692ece

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3c56c271cb213693e1ebc1c3dbea23e4ec692ece
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to