Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
2f7ffa01 by Salvatore Bonaccorso at 2026-06-25T05:53:31+02:00
Track fixed version via unstable for libssh2 issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3506,7 +3506,7 @@ CVE-2026-10034 (The WP DSGVO Tools (GDPR) plugin for
WordPress is vulnerable to
CVE-2025-7737 (DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual
Storage Pl ...)
NOT-FOR-US: Hitachi
CVE-2025-15661 (libssh2 through 1.11.1, fixed in commit 2dae302, contains an
out-of-bo ...)
- - libssh2 <unfixed> (bug #1140401)
+ - libssh2 1.11.1-4 (bug #1140401)
NOTE: https://github.com/libssh2/libssh2/pull/1705
NOTE: https://github.com/libssh2/libssh2/pull/1717
NOTE: Fixed by:
https://github.com/libssh2/libssh2/commit/2dae3024897e1898d389835151f4e9606227721d
@@ -3773,11 +3773,11 @@ CVE-2026-55202 (Tinyproxy through 1.11.3, fixed in
commit 09312a1, fails to prop
CVE-2026-55201 (Evil-WinRM through 3.9, fixed in commit 6ecd570, contains a
path trave ...)
NOT-FOR-US: Evil-WinRM
CVE-2026-55200 (libssh2 through 1.11.1, fixed in commit 7acf3df contains an
out-of-bou ...)
- - libssh2 <unfixed> (bug #1140401)
+ - libssh2 1.11.1-4 (bug #1140401)
NOTE: https://github.com/libssh2/libssh2/pull/2052
NOTE: Fixed by:
https://github.com/libssh2/libssh2/commit/97acf3dfda80c91c3a8c9f2372546301d4a1a7a8
CVE-2026-55199 (libssh2 through 1.11.1, fixed in commit 1762685, contains a
pre-authen ...)
- - libssh2 <unfixed> (bug #1140401)
+ - libssh2 1.11.1-4 (bug #1140401)
NOTE: https://github.com/libssh2/libssh2/pull/1864
NOTE: Fixed by:
https://github.com/libssh2/libssh2/commit/17626857d20b3c9a1addfa45979dadcee1cd84a4
CVE-2026-54533 (vantage6 is an open-source infrastructure for privacy
preserving analy ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f7ffa014e2d1852ab68608f067e278417a5dc1f
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f7ffa014e2d1852ab68608f067e278417a5dc1f
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits