Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
af99ebe3 by Moritz Muehlenhoff at 2026-05-08T13:26:44+02:00
new golang-golang-x-net issue
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -347,7 +347,10 @@ CVE-2026-33844 (Improper input validation in Azure Managed
Instance for Apache C
CVE-2026-33823 (Improper authorization in Microsoft Teams allows an authorized
attacke ...)
NOT-FOR-US: Microsoft
CVE-2026-33814 (When processing HTTP/2 SETTINGS frames, transport will enter
an infini ...)
- TODO: check
+ - golang-golang-x-net <unfixed>
+ NOTE: https://go-review.googlesource.com/c/go/+/761581
+ NOTE: https://go-review.googlesource.com/c/net/+/761640
+ NOTE: https://github.com/golang/go/issues/78476
CVE-2026-33811 (When using LookupCNAME with the cgo DNS resolver, a very long
CNAME re ...)
- golang-1.25 1.25.10-1
- golang-1.26 1.26.3-1
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/af99ebe301fd3cd1712bce96e53e07d2e3c42564
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/af99ebe301fd3cd1712bce96e53e07d2e3c42564
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits