Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
99b0b278 by Salvatore Bonaccorso at 2026-07-17T21:57:37+02:00
Track fixed version for libyaml-syck-perl issues fixed via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -840,19 +840,19 @@ CVE-2023-49899 (An unauthenticated remote attacker 
canexecute any command on the
 CVE-2019-25764 (**UNSUPPORTED WHEN ASSIGNED** Exposed IOCTL with Insufficient 
Access C ...)
        NOT-FOR-US: ASUS
 CVE-2026-57077 (YAML::Syck versions before 1.47 for Perl allow an 
out-of-bounds read v ...)
-       - libyaml-syck-perl <unfixed> (bug #1142267)
+       - libyaml-syck-perl 1.47-1 (bug #1142267)
        NOTE: https://lists.security.metacpan.org/cve-announce/msg/41898716/
        NOTE: Fixed by: 
https://github.com/toddr/YAML-Syck/commit/44c90a109ec3215ee7ce747bd11209835e123d8b
 (1.47)
 CVE-2026-57076 (YAML::Syck versions before 1.47 for Perl allow a heap 
use-after-free v ...)
-       - libyaml-syck-perl <unfixed> (bug #1142267)
+       - libyaml-syck-perl 1.47-1 (bug #1142267)
        NOTE: https://lists.security.metacpan.org/cve-announce/msg/41898718/
        NOTE: Fixed by: 
https://github.com/toddr/YAML-Syck/commit/44c90a109ec3215ee7ce747bd11209835e123d8b
 (1.47)
 CVE-2026-57075 (YAML::Syck versions before 1.47 for Perl allow an 
out-of-bounds read v ...)
-       - libyaml-syck-perl <unfixed> (bug #1142267)
+       - libyaml-syck-perl 1.47-1 (bug #1142267)
        NOTE: https://lists.security.metacpan.org/cve-announce/msg/41898720/
        NOTE: Fixed by: 
https://github.com/toddr/YAML-Syck/commit/44c90a109ec3215ee7ce747bd11209835e123d8b
 (1.47)
 CVE-2026-13713 (YAML::Syck versions before 1.47 for Perl allow a 
use-after-free and do ...)
-       - libyaml-syck-perl <unfixed> (bug #1142267)
+       - libyaml-syck-perl 1.47-1 (bug #1142267)
        NOTE: https://lists.security.metacpan.org/cve-announce/msg/41898719/
        NOTE: Fixed by: 
https://github.com/toddr/YAML-Syck/commit/44c90a109ec3215ee7ce747bd11209835e123d8b
 (1.47)
 CVE-2026-62321



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/99b0b2785e10a6ba39b7ed1b9d7871bd8dfae49a

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/99b0b2785e10a6ba39b7ed1b9d7871bd8dfae49a
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to