Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
780a03d0 by Salvatore Bonaccorso at 2026-02-25T10:26:56+01:00
Add three new vips issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -29,11 +29,20 @@ CVE-2026-3149 (A weakness has been identified in 
itsourcecode College Management
 CVE-2026-3148 (A vulnerability was determined in SourceCodester Simple and 
Nice Shopp ...)
        NOT-FOR-US: SourceCodester
 CVE-2026-3147 (A vulnerability was found in libvips up to 8.18.0. This affects 
the fu ...)
-       TODO: check
+       - vips <unfixed>
+       NOTE: https://github.com/libvips/libvips/issues/4874
+       NOTE: https://github.com/libvips/libvips/pull/4894
+       NOTE: Fixed by: 
https://github.com/libvips/libvips/commit/b3ab458a25e0e261cbd1788474bbc763f7435780
 CVE-2026-3146 (A vulnerability has been found in libvips up to 8.18.0. The 
impacted e ...)
-       TODO: check
+       - vips <unfixed>
+       NOTE: https://github.com/libvips/libvips/issues/4875
+       NOTE: https://github.com/libvips/libvips/pull/4888
+       NOTE: Fixed by: 
https://github.com/libvips/libvips/commit/d4ce337c76bff1b278d7085c3c4f4725e3aa6ece
 CVE-2026-3145 (A flaw has been found in libvips up to 8.18.0. The affected 
element is ...)
-       TODO: check
+       - vips <unfixed>
+       NOTE: https://github.com/libvips/libvips/issues/4876
+       NOTE: https://github.com/libvips/libvips/pull/4888
+       NOTE: Fixed by: 
https://github.com/libvips/libvips/commit/d4ce337c76bff1b278d7085c3c4f4725e3aa6ece
 CVE-2026-3137 (A security vulnerability has been detected in CodeAstro Food 
Ordering  ...)
        NOT-FOR-US: CodeAstro
 CVE-2026-3135 (A weakness has been identified in itsourcecode News Portal 
Project 1.0 ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/780a03d0a77eb4691cd49968205cf7aa2dc27fc5

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/780a03d0a77eb4691cd49968205cf7aa2dc27fc5
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to