Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
ea6b47f8 by Salvatore Bonaccorso at 2026-07-18T08:05:30+02:00
Add new python-zeroconf issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -119,9 +119,16 @@ CVE-2026-49209 (Symfony UX is a JavaScript ecosystem for
Symfony. From 2.5.0 unt
CVE-2026-49208 (Symfony UX is a JavaScript ecosystem for Symfony. From 2.8.0
until 2.3 ...)
NOT-FOR-US: Symfony UX
CVE-2026-48487 (Zeroconf is a pure Python implementation of multicast DNS
service disc ...)
- TODO: check
+ - python-zeroconf 0.149.16-1
+ NOTE:
https://github.com/python-zeroconf/python-zeroconf/security/advisories/GHSA-qc2x-6f54-m6h9
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/issues/1752
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/pull/1756
+ NOTE: Fixed by:
https://github.com/python-zeroconf/python-zeroconf/commit/544449596e645fcaad3834fa0cb614a54f847a82
(0.149.13)
CVE-2026-48045 (Zeroconf is a pure Python implementation of multicast DNS
service disc ...)
- TODO: check
+ - python-zeroconf 0.149.16-1
+ NOTE:
https://github.com/python-zeroconf/python-zeroconf/security/advisories/GHSA-9663-mqmp-p9mm
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/pull/1751
+ NOTE: Fixed by:
https://github.com/python-zeroconf/python-zeroconf/commit/b22c8ff19c66c68907d220a4823c0950f4fa93f7
(0.149.12)
CVE-2026-48016 (Shopware is an open commerce platform. Prior to 6.6.10.18 and
6.7.10.1 ...)
NOT-FOR-US: Shopware
CVE-2026-48015 (Shopware is an open commerce platform. Prior to 6.6.10.18 and
6.7.10.1 ...)
@@ -135,11 +142,22 @@ CVE-2026-48009 (Shopware is an open commerce platform.
Prior to 6.6.10.18 and 6.
CVE-2026-48008 (Shopware is an open commerce platform. Prior to 6.6.10.18 and
6.7.10.1 ...)
NOT-FOR-US: Shopware
CVE-2026-47184 (Zeroconf is a pure Python implementation of multicast DNS
service disc ...)
- TODO: check
+ - python-zeroconf 0.149.7-1
+ NOTE:
https://github.com/python-zeroconf/python-zeroconf/security/advisories/GHSA-rfg2-pjw2-56x2
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/issues/1715
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/pull/1718
+ NOTE: Fixed by:
https://github.com/python-zeroconf/python-zeroconf/commit/0ad3f37b5b852b8f614d322283d148efb2cef6e4
(0.149.7)
CVE-2026-47183 (Zeroconf is a pure Python implementation of multicast DNS
service disc ...)
- TODO: check
+ - python-zeroconf 0.149.6-1
+ NOTE:
https://github.com/python-zeroconf/python-zeroconf/security/advisories/GHSA-phvx-9mgw-67r5
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/issues/1714
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/pull/1717
+ NOTE: Fixed by:
https://github.com/python-zeroconf/python-zeroconf/commit/95561e28b24922358f1991e38e3a86d70d72dcec
(0.149.6)
CVE-2026-47180 (Zeroconf is a pure Python implementation of multicast DNS
service disc ...)
- TODO: check
+ - python-zeroconf 0.149.6-1
+ NOTE:
https://github.com/python-zeroconf/python-zeroconf/security/advisories/GHSA-9pgc-3ccv-5297
+ NOTE: https://github.com/python-zeroconf/python-zeroconf/pull/1719
+ NOTE: Fixed by:
https://github.com/python-zeroconf/python-zeroconf/commit/f9e23592137f30fdf7ef710dba065da31c79b1cf
(0.149.5)
CVE-2026-45703 (Pimcore is an Open Source Data & Experience Management
Platform. Prior ...)
TODO: check
CVE-2026-45162 (Pimcore is an Open Source Data & Experience Management
Platform. Prior ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea6b47f8fe93594a689d220b4feacb82a15d5c4c
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea6b47f8fe93594a689d220b4feacb82a15d5c4c
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits