Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
262e1aca by Moritz Muehlenhoff at 2025-12-19T17:18:02+01:00
auto-nfu: Extend F5 rule
- - - - -
2 changed files:
- data/CVE/list
- data/packages/nfu.yaml
Changes:
=====================================
data/CVE/list
=====================================
@@ -1219,7 +1219,7 @@ CVE-2025-20393 (Cisco is aware of a potential
vulnerability. Cisco is curr
CVE-2025-14828
REJECTED
CVE-2025-14727 (A vulnerability exists in NGINX Ingress Controller's
nginx.org/rewrite ...)
- TODO: check
+ NOT-FOR-US: F5
CVE-2025-14347 (Improper Neutralization of Input During Web Page Generation
(XSS or 'C ...)
NOT-FOR-US: Proliz Software Ltd. OBS (Student Affairs Information
System)
CVE-2025-14266 (CSRF in Ercom Cryptobox administration console allows attacker
to trig ...)
=====================================
data/packages/nfu.yaml
=====================================
@@ -385,9 +385,10 @@
allOf:
- cna: f5
- anyOf:
+ - product: BIG-IP
- product: F5OS - Appliance
- product: F5OS - Chassis
- - product: BIG-IP
+ - product: NGINX Ingress Controller
- reason: Fortra
allOf:
- cna: Fortra
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/262e1acac66ab263111499c37e0640da4d800e0e
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/262e1acac66ab263111499c37e0640da4d800e0e
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits