Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
29fd805c by Salvatore Bonaccorso at 2026-07-18T16:24:13+02:00
Add CVE-2026-52584/jpeg-xl

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -101,7 +101,11 @@ CVE-2026-53727 (css_parser is a Ruby CSS parser. From 
2.2.0 until 3.0.0, CssPars
        NOTE: Fixed by: 
https://github.com/premailer/css_parser/commit/7d2ddf0189cd54b54f378f59daefa10cb036e476
 (v3.0.0)
        NOTE: Fixed by: 
https://github.com/premailer/css_parser/commit/e0a151458b2a801ae265ba420862ef8b1127b3ae
 (v3.0.0)
 CVE-2026-52584 (Buffer Overflow vulnerability in libjxl v.0.11.2 and before 
allows a l ...)
-       TODO: check
+       - jpeg-xl <unfixed>
+       NOTE: https://github.com/libjxl/libjxl/issues/4803
+       NOTE: https://github.com/libjxl/libjxl/pull/4804
+       NOTE: https://github.com/libjxl/libjxl/pull/4870
+       NOTE: Fixed by: 
https://github.com/libjxl/libjxl/commit/2cdc4c78b6f08c09ae70627d99900446b4450b47
 (v0.12.0)
 CVE-2026-52348 (cool-admin-java 8.0.0 has a SQL injection vulnerability in the 
order() ...)
        NOT-FOR-US: cool-admin-java
 CVE-2026-52203 (An issue in MCMS v.6.1.1 allows a remote attacker to obtain 
sensitive  ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29fd805c82202979f807584f9d7575d1a058a195

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29fd805c82202979f807584f9d7575d1a058a195
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to