Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
19ecf1b8 by Moritz Muehlenhoff at 2026-08-21T08:51:28+02:00
new freeipa issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -192,13 +192,21 @@ CVE-2026-73253 (Mongoose is an embedded web server and
network library. Prior to
CVE-2026-73220 (CVAT is an open source interactive video and image annotation
tool for ...)
NOT-FOR-US: Computer Vision Annotation Tool (CVAT)
CVE-2026-73199 (A flaw was found in the `ipa-enrollment` SLAPI plugin. A
remote authen ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2471741
CVE-2026-73198 (A flaw was found in FreeIPA. A remote, unauthenticated
attacker can ex ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2472960
CVE-2026-73197 (A flaw was found in FreeIPA. A remote, unauthenticated
attacker can ex ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2474697
CVE-2026-73196 (A flaw was found in FreeIPA. A low-privilege authenticated
user can ex ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2474712
CVE-2026-72854 (msgpack_unpacker_expand_buffer in src/unpack.c, reached
through the pu ...)
- msgpack-c <unfixed>
NOTE: https://github.com/msgpack/msgpack-c/issues/1181
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19ecf1b8109e1ba632845562f4dc2f20b8b7d1a9
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19ecf1b8109e1ba632845562f4dc2f20b8b7d1a9
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits