Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
10c6a7ac by Moritz Muehlenhoff at 2026-09-13T23:12:02+02:00
bugnums
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -217,7 +217,7 @@ CVE-2026-90560 (zstd-jni versions 1.2.0 through 1.5.7-13
contain an out-of-bound
CVE-2026-90559 (snappy-java through 1.1.10.8 contains an out-of-bounds write
vulnerabi ...)
NOT-FOR-US: snappy-java
CVE-2026-90558 (sngrep through 1.8.4 contains stack buffer overflow
vulnerabilities in ...)
- - sngrep <unfixed>
+ - sngrep <unfixed> (bug #1147622)
[trixie] - sngrep <no-dsa> (Minor issue)
NOTE: Fixed by:
https://github.com/irontec/sngrep/commit/1ff74ee3ab5ff280e8ba976aa8c744dca57eb35b
CVE-2026-90555 (vLLM versions before 0.28.0 fail to validate audio sample rate
headers ...)
@@ -66167,7 +66167,7 @@ CVE-2026-53368 (In the Linux kernel, the following
vulnerability has been resolv
- linux 7.0.7-1
NOTE:
https://git.kernel.org/linus/019f9dda7f66e55eb94cd32e1d3fff5835f73fbc (7.1-rc1)
CVE-2026-9323 (The urwid web display backend (urwid/display/web.py) generates
web ses ...)
- - urwid <unfixed>
+ - urwid <unfixed> (bug #1147615)
[trixie] - urwid <no-dsa> (Minor issue)
NOTE:
https://github.com/urwid/urwid/security/advisories/GHSA-rjwp-g85x-gmjv
NOTE: https://github.com/urwid/urwid/pull/1128
@@ -107467,7 +107467,7 @@ CVE-2026-9543 (A vulnerability has been found in
Totolink N300RH 6.1c.1353_B2019
CVE-2026-9542 (A weakness has been identified in CodeAstro Leave Management
System 1. ...)
NOT-FOR-US: CodeAstro
CVE-2026-9541 (A security flaw has been discovered in Squirrel up to 3.2.
Impacted is ...)
- - squirrel3 <unfixed>
+ - squirrel3 <unfixed> (bug #1147618)
[trixie] - squirrel3 <ignored> (Minor issue)
[bullseye] - squirrel3 <postponed> (Minor issue)
NOTE: https://github.com/albertodemichelis/squirrel/issues/327
@@ -108491,7 +108491,7 @@ CVE-2026-9367 (A vulnerability was determined in
NousResearch hermes-agent up to
CVE-2026-9366 (A vulnerability was found in NousResearch hermes-agent
2026.4.23. The ...)
NOT-FOR-US: NousResearch hermes-agent
CVE-2026-9365 (A vulnerability has been found in Ettercap up to 0.8.3. The
affected e ...)
- - ettercap <unfixed>
+ - ettercap <unfixed> (bug #1147620)
[trixie] - ettercap <no-dsa> (Minor issue)
[bookworm] - ettercap <no-dsa> (Minor issue)
[bullseye] - ettercap <no-dsa> (Minor issue)
@@ -116222,7 +116222,7 @@ CVE-2026-8263 (A security flaw has been discovered in
Tenda AC6 15.03.06.49_mult
CVE-2026-8262 (A vulnerability was identified in Devs Palace ERP Online up to
4.0.0. ...)
NOT-FOR-US: Devs Palace ERP Online
CVE-2026-8261 (A vulnerability was determined in Squirrel up to 3.2. This
affects the ...)
- - squirrel3 <unfixed>
+ - squirrel3 <unfixed> (bug #1147618)
[trixie] - squirrel3 <no-dsa> (Minor issue)
[bullseye] - squirrel3 <postponed> (Minor issue)
NOTE: https://github.com/albertodemichelis/squirrel/issues/326
@@ -116231,7 +116231,7 @@ CVE-2026-8260 (A vulnerability was found in D-Link
DCS-935L up to 1.10.01. The i
CVE-2026-8259 (A vulnerability has been found in Tenda AC6 2.0/15.03.06.23.
The affec ...)
NOT-FOR-US: Tenda
CVE-2026-8258 (A flaw has been found in Squirrel up to 3.2. Impacted is the
function ...)
- - squirrel3 <unfixed>
+ - squirrel3 <unfixed> (bug #1147618)
[trixie] - squirrel3 <no-dsa> (Minor issue)
[bullseye] - squirrel3 <postponed> (Minor issue)
NOTE: https://github.com/albertodemichelis/squirrel/issues/325
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10c6a7acdd2fbff1476cb6b66435d121794528c1
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10c6a7acdd2fbff1476cb6b66435d121794528c1
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits