Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
be673c7f by Moritz Muehlenhoff at 2026-02-24T08:32:39+01:00
trixie/bookworm triage
- - - - -
2 changed files:
- data/CVE/list
- data/dsa-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -1953,6 +1953,8 @@ CVE-2026-XXXX [RUSTSEC-2026-0013]
NOTE: https://rustsec.org/advisories/RUSTSEC-2026-0013.html
CVE-2026-27206 (Zumba Json Serializer is a library to serialize PHP variables
in JSON ...)
- php-zumba-json-serializer <unfixed> (bug #1128481)
+ [trixie] - php-zumba-json-serializer <no-dsa> (Minor issue)
+ [bookworm] - php-zumba-json-serializer <no-dsa> (Minor issue)
NOTE:
https://github.com/zumba/json-serializer/security/advisories/GHSA-v7m3-fpcr-h7m2
NOTE: Fixed by:
https://github.com/zumba/json-serializer/commit/bf26227879adefce75eb9651040d8982be97b881
(3.2.3)
CVE-2026-2733 (A flaw was identified in the Docker v2 authentication endpoint
of Keyc ...)
@@ -13867,6 +13869,7 @@ CVE-2025-15282 (User-controlled data URLs parsed by
urllib.request.DataHandler a
{DLA-4455-1}
- python3.14 3.14.3-1 (bug #1126779)
- python3.13 3.13.12-1 (bug #1126780)
+ [trixie] - python3.13 <no-dsa> (Minor issue)
- python3.11 <removed>
- python3.9 <removed>
- pypy3 <unfixed> (bug #1126781)
=====================================
data/dsa-needed.txt
=====================================
@@ -32,6 +32,8 @@ gimp
--
git-lfs
--
+isc-kea/oldstable
+--
jackson-core
--
libreswan/oldstable
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/be673c7fa823bcd3b8ef0bc5c50bd874a12f2f1d
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/be673c7fa823bcd3b8ef0bc5c50bd874a12f2f1d
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits