Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
10c6a7ac by Moritz Muehlenhoff at 2026-09-13T23:12:02+02:00
bugnums

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -217,7 +217,7 @@ CVE-2026-90560 (zstd-jni versions 1.2.0 through 1.5.7-13 
contain an out-of-bound
 CVE-2026-90559 (snappy-java through 1.1.10.8 contains an out-of-bounds write 
vulnerabi ...)
        NOT-FOR-US: snappy-java
 CVE-2026-90558 (sngrep through 1.8.4 contains stack buffer overflow 
vulnerabilities in ...)
-       - sngrep <unfixed>
+       - sngrep <unfixed> (bug #1147622)
        [trixie] - sngrep <no-dsa> (Minor issue)
        NOTE: Fixed by: 
https://github.com/irontec/sngrep/commit/1ff74ee3ab5ff280e8ba976aa8c744dca57eb35b
 CVE-2026-90555 (vLLM versions before 0.28.0 fail to validate audio sample rate 
headers ...)
@@ -66167,7 +66167,7 @@ CVE-2026-53368 (In the Linux kernel, the following 
vulnerability has been resolv
        - linux 7.0.7-1
        NOTE: 
https://git.kernel.org/linus/019f9dda7f66e55eb94cd32e1d3fff5835f73fbc (7.1-rc1)
 CVE-2026-9323 (The urwid web display backend (urwid/display/web.py) generates 
web ses ...)
-       - urwid <unfixed>
+       - urwid <unfixed> (bug #1147615)
        [trixie] - urwid <no-dsa> (Minor issue)
        NOTE: 
https://github.com/urwid/urwid/security/advisories/GHSA-rjwp-g85x-gmjv
        NOTE: https://github.com/urwid/urwid/pull/1128
@@ -107467,7 +107467,7 @@ CVE-2026-9543 (A vulnerability has been found in 
Totolink N300RH 6.1c.1353_B2019
 CVE-2026-9542 (A weakness has been identified in CodeAstro Leave Management 
System 1. ...)
        NOT-FOR-US: CodeAstro
 CVE-2026-9541 (A security flaw has been discovered in Squirrel up to 3.2. 
Impacted is ...)
-       - squirrel3 <unfixed>
+       - squirrel3 <unfixed> (bug #1147618)
        [trixie] - squirrel3 <ignored> (Minor issue)
        [bullseye] - squirrel3 <postponed> (Minor issue)
        NOTE: https://github.com/albertodemichelis/squirrel/issues/327
@@ -108491,7 +108491,7 @@ CVE-2026-9367 (A vulnerability was determined in 
NousResearch hermes-agent up to
 CVE-2026-9366 (A vulnerability was found in NousResearch hermes-agent 
2026.4.23. The  ...)
        NOT-FOR-US: NousResearch hermes-agent
 CVE-2026-9365 (A vulnerability has been found in Ettercap up to 0.8.3. The 
affected e ...)
-       - ettercap <unfixed>
+       - ettercap <unfixed> (bug #1147620)
        [trixie] - ettercap <no-dsa> (Minor issue)
        [bookworm] - ettercap <no-dsa> (Minor issue)
        [bullseye] - ettercap <no-dsa> (Minor issue)
@@ -116222,7 +116222,7 @@ CVE-2026-8263 (A security flaw has been discovered in 
Tenda AC6 15.03.06.49_mult
 CVE-2026-8262 (A vulnerability was identified in Devs Palace ERP Online up to 
4.0.0.  ...)
        NOT-FOR-US: Devs Palace ERP Online
 CVE-2026-8261 (A vulnerability was determined in Squirrel up to 3.2. This 
affects the ...)
-       - squirrel3 <unfixed>
+       - squirrel3 <unfixed> (bug #1147618)
        [trixie] - squirrel3 <no-dsa> (Minor issue)
        [bullseye] - squirrel3 <postponed> (Minor issue)
        NOTE: https://github.com/albertodemichelis/squirrel/issues/326
@@ -116231,7 +116231,7 @@ CVE-2026-8260 (A vulnerability was found in D-Link 
DCS-935L up to 1.10.01. The i
 CVE-2026-8259 (A vulnerability has been found in Tenda AC6 2.0/15.03.06.23. 
The affec ...)
        NOT-FOR-US: Tenda
 CVE-2026-8258 (A flaw has been found in Squirrel up to 3.2. Impacted is the 
function  ...)
-       - squirrel3 <unfixed>
+       - squirrel3 <unfixed> (bug #1147618)
        [trixie] - squirrel3 <no-dsa> (Minor issue)
        [bullseye] - squirrel3 <postponed> (Minor issue)
        NOTE: https://github.com/albertodemichelis/squirrel/issues/325



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10c6a7acdd2fbff1476cb6b66435d121794528c1

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10c6a7acdd2fbff1476cb6b66435d121794528c1
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to