Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
365926c2 by Salvatore Bonaccorso at 2026-07-29T23:12:17+02:00
Mark bison issues as no-dsa
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -234,10 +234,12 @@ CVE-2026-57834 (Apache Traffic Server allows request
smuggling if chunked messag
NOTE: https://lists.apache.org/thread/5prl9glcm9g2swnq9hqxvnokylm1gr6d
CVE-2026-56390 (GNU Bison improperly handles grammar\u2011defined output
paths. Gramma ...)
- bison <unfixed>
+ [trixie] - bison <no-dsa> (Minor issue)
NOTE: https://cert.pl/en/posts/2026/07/CVE-2026-56389/
NOTE:
https://cgit.git.savannah.gnu.org/cgit/bison.git/commit/?id=8d101c19d4d9aaedf83a448c925513742d4efcf0
CVE-2026-56389 (GNU Bison allows for an execution of an arbitrary program
during HTML ...)
- bison <unfixed>
+ [trixie] - bison <no-dsa> (Minor issue)
NOTE: https://cert.pl/en/posts/2026/07/CVE-2026-56389
NOTE:
https://cgit.git.savannah.gnu.org/cgit/bison.git/commit/?id=3169c1e7a2c6acc4c59dfcf8b089896d6881925b
CVE-2026-55995 (A Double Free vulnerability in open-iscsi allows
anunauthenticatedMITM ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/365926c28a590e82f385a55d67665d31324337c3
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/365926c28a590e82f385a55d67665d31324337c3
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits