Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
48b2391d by Salvatore Bonaccorso at 2026-05-07T14:40:07+02:00
Add information for CVE-2026-37457/frr
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3350,8 +3350,9 @@ CVE-2026-37504 (Sensitive server_token exposed via GET
parameter in V2Board thru
CVE-2026-37503 (Cross-Site Scripting (XSS) in V2Board thru 1.7.4. The
custom_html fiel ...)
NOT-FOR-US: V2Board
CVE-2026-37457 (An off-by-one out-of-bounds write vulnerability in the
bgp_flowspec_op ...)
- - frr <unfixed>
- NOTE:
https://github.com/FRRouting/frr/commit/0e6882bc72c0278988a47b2f0f73b7a91099a25c
+ - frr 10.6.0-2
+ NOTE:
https://github.com/FRRouting/frr/commit/0e6882bc72c0278988a47b2f0f73b7a91099a25c
(master)
+ NOTE:
https://github.com/FRRouting/frr/commit/b413dbc239841ce4d13824119df4be9c6f06647e
(frr-10.6.0)
CVE-2026-35233 (An unprivileged attacker can craft a user-space process with a
malicio ...)
- dtrace <unfixed> (bug #1135619)
NOTE: https://linux.oracle.com/cve/CVE-2026-35233.html
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/48b2391dc528cda039de8995ba52d977f5e144e8
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/48b2391dc528cda039de8995ba52d977f5e144e8
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits