Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
1e91e5f2 by Moritz Muehlenhoff at 2026-09-30T23:55:38+02:00
auto-nfu: Extend Apache rule

- - - - -


2 changed files:

- data/CVE/list
- data/packages/nfu.yaml


Changes:

=====================================
data/CVE/list
=====================================
@@ -790,13 +790,13 @@ CVE-2026-102578 (A flaw was found in Moodle. An 
authenticated attacker with acce
 CVE-2026-102577 (A flaw was found in Moodle. Incorrect handling of IPv4-mapped 
IPv6 add ...)
        - moodle <removed>
 CVE-2026-102511 (Improper Verification of Source of a Communication Channel in 
the ADS  ...)
-       TODO: check
+       NOT-FOR-US: Apache software not packaged in Debian
 CVE-2026-102510 (Integer Overflow, Improper Validation of Array Index, 
Uncontrolled Rec ...)
-       TODO: check
+       NOT-FOR-US: Apache software not packaged in Debian
 CVE-2026-102509 (Memory Allocation with Excessive Size Value, Allocation of 
Resources W ...)
-       TODO: check
+       NOT-FOR-US: Apache software not packaged in Debian
 CVE-2026-102508 (Improper Verification of Cryptographic Signature and Improper 
Certific ...)
-       TODO: check
+       NOT-FOR-US: Apache software not packaged in Debian
 CVE-2026-102490 (All versions of Zammad including the latest alpha enable the 
local zam ...)
        TODO: check
 CVE-2026-102489 (Zammad versions 6.3.0 to 6.5.4 are vulnerable a session 
hijack vulnera ...)


=====================================
data/packages/nfu.yaml
=====================================
@@ -432,6 +432,7 @@
       - product: Apache OpenMeetings
       - product: Apache OpenOffice
       - product: Apache Parquet Hadoop
+      - product: Apache PLC4X
       - product: Apache Polaris
       - product: Apache Qpid ProtonJ2
       - product: Apache Ranger



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1e91e5f29a408c589fcf6151e60c9cd83ac98134

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1e91e5f29a408c589fcf6151e60c9cd83ac98134
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to