Bastien Roucariès pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
eac8ab66 by Bastien Roucariès at 2026-02-16T21:43:09+01:00
dla-needed add gegl
RCE so important
- - - - -
dedde978 by Bastien Roucariès at 2026-02-16T21:43:12+01:00
CVE-2026-1225/logback
requires write access to conf files => minor issue
- - - - -
2 changed files:
- data/CVE/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -9619,6 +9619,7 @@ CVE-2026-1260 (Invalid memory access in Sentencepiece
versions less than 0.2.1 w
NOT-FOR-US: Sentencepiece
CVE-2026-1225 (ACE vulnerability in configuration file processing by QOS.CH
logback- ...)
- logback <unfixed> (bug #1126748)
+ [bullseye] - logback <postponed> (minor issue; requires write access to
conf files)
NOTE: https://logback.qos.ch/news.html#1.5.25
CVE-2026-1036 (The Photo Gallery by 10Web \u2013 Mobile-Friendly Image Gallery
plugin ...)
NOT-FOR-US: WordPress plugin
=====================================
data/dla-needed.txt
=====================================
@@ -104,6 +104,9 @@ gdcm (eamanu)
NOTE: 20260102: Contact upstream to know if they plan fix last CVEs. I'm
starting to work on a patch for them.
NOTE: 20260108: Upstream is working on the fix.
--
+gegl
+ NOTE: 20260216: Added by Front-Desk (rouca)
+--
gimp (Thorsten Alteholz)
NOTE: 20260126: Added by Front-Desk (Beuc)
NOTE: 20260126: Upcoming DSA (Beuc/front-desk)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/af38fc8a971d831113b9b7f5e938439623116680...dedde978bc205a686d308a2ee61726fafa6f7371
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/af38fc8a971d831113b9b7f5e938439623116680...dedde978bc205a686d308a2ee61726fafa6f7371
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits