Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
953b3941 by Salvatore Bonaccorso at 2026-07-14T00:12:45+02:00
Add reference for second required commit for CVE-2026-50811
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3299,6 +3299,7 @@ CVE-2026-50811 (An out-of-bounds read vulnerability
exists in FreeType 2.14.3 an
[bookworm] - freetype <not-affected> (TT_Get_Var_Design OOB read
introduced in 2.14.0; shipped code uses safe coords[i]=0)
[bullseye] - freetype <not-affected> (TT_Get_Var_Design OOB read
introduced in 2.14.0; shipped code uses safe coords[i]=0)
NOTE: https://gitlab.freedesktop.org/freetype/freetype/-/work_items/1436
+ NOTE: Fixed by:
https://gitlab.freedesktop.org/freetype/freetype/-/commit/8fa928f1617aba65f45b00f0dcb109f077b7741e
NOTE: Fixed by:
https://gitlab.freedesktop.org/freetype/freetype/-/commit/5a280ecde6f324de0d226261036e736e0cb49a71
CVE-2026-50810 (A NULL pointer dereference in smooth_parse_stream_index() in
src/media ...)
- gpac <removed>
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/953b3941554d5448d3c58ca6ef929931ad8ade2a
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/953b3941554d5448d3c58ca6ef929931ad8ade2a
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits