Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: b8569e67 by Salvatore Bonaccorso at 2025-12-16T17:26:09+01:00 Add CVE-2025-14282/dropbear issue - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,3 +1,10 @@ +CVE-2025-14282 [privilege escalation via unix stream socket forwarding] + - dropbear <unfixed> (bug #1123069) + [bookworm] - dropbear <not-affected> (Vulnerable code introduced later) + [bullseye] - dropbear <not-affected> (Vulnerable code introduced later) + NOTE: https://github.com/mkj/dropbear/pull/391 + NOTE: https://github.com/mkj/dropbear/pull/394 + NOTE: https://lists.ucc.gu.uwa.edu.au/pipermail/dropbear/2025q4/002390.html CVE-2025-14439 NOT-FOR-US: OpenUSD CVE-2025-XXXX [Malicious remote can overwrite and exfiltrate local files] View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8569e67161a4b8e44c493b92ea5d689f6f7b8e9 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b8569e67161a4b8e44c493b92ea5d689f6f7b8e9 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
