Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
6fcfbe60 by Salvatore Bonaccorso at 2026-07-10T09:00:49+02:00
Mark more wolfssl issues as no-dsa
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -9293,12 +9293,15 @@ CVE-2026-6432 (Improper bounds validation in EmberZNet
SDK versions 9.0.2 and ea
NOT-FOR-US: Silicon Labs
CVE-2026-6291 (Bleichenbacher padding oracle in PKCS#7 KTRI decryption. When
decrypti ...)
- wolfssl 5.9.2-1 (bug #1140765)
+ [trixie] - wolfssl <no-dsa> (Can be fixed in point release)
NOTE: https://github.com/wolfSSL/wolfssl/pull/10203 (v5.9.2-stable)
CVE-2026-6094 (Heap buffer overread in wc_PKCS7_DecodeEnvelopedData when
parsing craf ...)
- wolfssl 5.9.2-1 (bug #1140765)
+ [trixie] - wolfssl <no-dsa> (Can be fixed in point release)
NOTE: https://github.com/wolfSSL/wolfssl/pull/10128 (v5.9.2-stable)
CVE-2026-6091 (Partial-chain certificate verification may accept chains that
terminat ...)
- wolfssl 5.9.2-1 (bug #1140765)
+ [trixie] - wolfssl <no-dsa> (Can be fixed in point release)
NOTE: https://github.com/wolfSSL/wolfssl/pull/10170 (v5.9.2-stable)
CVE-2026-57700 (Unrestricted Upload of File with Dangerous Type vulnerability
in Daan. ...)
NOT-FOR-US: WordPress plugin or theme
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6fcfbe605bd07f682d9e46786d135def90ef60aa
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6fcfbe605bd07f682d9e46786d135def90ef60aa
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits