Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
3e08254a by Salvatore Bonaccorso at 2026-05-06T09:20:57+02:00
Add CVE-2026-44405/paramiko
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -9,7 +9,8 @@ CVE-2026-7572 (An off-by-one error (CWE-193) in the
ConsumeUnit16Array and Consu
CVE-2026-5753 (The All-in-One WP Migration Unlimited Extension plugin for
WordPress i ...)
NOT-FOR-US: WordPress plugin
CVE-2026-44405 (In Paramiko through 4.0.0 before a448945, rsakey.py allows the
SHA-1 a ...)
- TODO: check
+ - paramiko <unfixed>
+ NOTE:
https://github.com/paramiko/paramiko/commit/a4489456b6f65281e172380cc4826cee5e851dbb
CVE-2026-44331 (In ProFTPD through 1.3.9a before 7666224, a SQL injection
vulnerabilit ...)
TODO: check
CVE-2026-41950 (Dify before version 1.14.0 contains an authorization bypass
vulnerabil ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3e08254a774b0ae5c07a71f012de5bc14b4b5521
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3e08254a774b0ae5c07a71f012de5bc14b4b5521
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits