Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
48b2391d by Salvatore Bonaccorso at 2026-05-07T14:40:07+02:00
Add information for CVE-2026-37457/frr

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3350,8 +3350,9 @@ CVE-2026-37504 (Sensitive server_token exposed via GET 
parameter in V2Board thru
 CVE-2026-37503 (Cross-Site Scripting (XSS) in V2Board thru 1.7.4. The 
custom_html fiel ...)
        NOT-FOR-US: V2Board
 CVE-2026-37457 (An off-by-one out-of-bounds write vulnerability in the 
bgp_flowspec_op ...)
-       - frr <unfixed>
-       NOTE: 
https://github.com/FRRouting/frr/commit/0e6882bc72c0278988a47b2f0f73b7a91099a25c
+       - frr 10.6.0-2
+       NOTE: 
https://github.com/FRRouting/frr/commit/0e6882bc72c0278988a47b2f0f73b7a91099a25c
 (master)
+       NOTE: 
https://github.com/FRRouting/frr/commit/b413dbc239841ce4d13824119df4be9c6f06647e
 (frr-10.6.0)
 CVE-2026-35233 (An unprivileged attacker can craft a user-space process with a 
malicio ...)
        - dtrace <unfixed> (bug #1135619)
        NOTE: https://linux.oracle.com/cve/CVE-2026-35233.html



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/48b2391dc528cda039de8995ba52d977f5e144e8

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/48b2391dc528cda039de8995ba52d977f5e144e8
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to