Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
780a03d0 by Salvatore Bonaccorso at 2026-02-25T10:26:56+01:00
Add three new vips issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -29,11 +29,20 @@ CVE-2026-3149 (A weakness has been identified in
itsourcecode College Management
CVE-2026-3148 (A vulnerability was determined in SourceCodester Simple and
Nice Shopp ...)
NOT-FOR-US: SourceCodester
CVE-2026-3147 (A vulnerability was found in libvips up to 8.18.0. This affects
the fu ...)
- TODO: check
+ - vips <unfixed>
+ NOTE: https://github.com/libvips/libvips/issues/4874
+ NOTE: https://github.com/libvips/libvips/pull/4894
+ NOTE: Fixed by:
https://github.com/libvips/libvips/commit/b3ab458a25e0e261cbd1788474bbc763f7435780
CVE-2026-3146 (A vulnerability has been found in libvips up to 8.18.0. The
impacted e ...)
- TODO: check
+ - vips <unfixed>
+ NOTE: https://github.com/libvips/libvips/issues/4875
+ NOTE: https://github.com/libvips/libvips/pull/4888
+ NOTE: Fixed by:
https://github.com/libvips/libvips/commit/d4ce337c76bff1b278d7085c3c4f4725e3aa6ece
CVE-2026-3145 (A flaw has been found in libvips up to 8.18.0. The affected
element is ...)
- TODO: check
+ - vips <unfixed>
+ NOTE: https://github.com/libvips/libvips/issues/4876
+ NOTE: https://github.com/libvips/libvips/pull/4888
+ NOTE: Fixed by:
https://github.com/libvips/libvips/commit/d4ce337c76bff1b278d7085c3c4f4725e3aa6ece
CVE-2026-3137 (A security vulnerability has been detected in CodeAstro Food
Ordering ...)
NOT-FOR-US: CodeAstro
CVE-2026-3135 (A weakness has been identified in itsourcecode News Portal
Project 1.0 ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/780a03d0a77eb4691cd49968205cf7aa2dc27fc5
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/780a03d0a77eb4691cd49968205cf7aa2dc27fc5
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits