Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: f7163efd by Salvatore Bonaccorso at 2026-01-08T23:19:11+01:00 Update tracking for CVE-2025-67859 The initial tracking as correct until tlp 1.9.0-1 was installed for unstable, immediately followed by 1.9.1-1 though. As 1.9.0-1 though was technically seen (even at same time with 1.9.1-1 acceptance), let's still cconsider we saw 1.9.0-1. Link: https://tracker.debian.org/news/1705720/accepted-tlp-190-1-source-all-into-unstable/ Link: https://tracker.debian.org/news/1705737/accepted-tlp-191-1-source-into-unstable/ - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -515,8 +515,12 @@ CVE-2025-13761 CVE-2025-9222 - gitlab <not-affected> (Vulnerable code not present) CVE-2025-67859 - - tlp <not-affected> (Vulnerable code not yet present) + - tlp 1.9.1-1 + [trixie] - tlp <not-affected> (Vulnerable code not yet present) + [bookworm] - tlp <not-affected> (Vulnerable code not yet present) + [bullseye] - tlp <not-affected> (Vulnerable code not yet present) NOTE: https://www.openwall.com/lists/oss-security/2026/01/07/8 + NOTE: Fixed by: https://github.com/linrunner/TLP/commit/08aa9cdb135b3563b2fb6eb4e0ecb638df5e7c09 (1.9.1) CVE-2026-22544 (An attacker with a network connection could detect credentials in clea ...) NOT-FOR-US: EFACEC CVE-2026-22543 (The credentials required to access the device's web server are sent in ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f7163efd4b7a06da99b1e20e3124c2d88b92d3a6 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f7163efd4b7a06da99b1e20e3124c2d88b92d3a6 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
