Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
5a5607cd by Moritz Muehlenhoff at 2026-10-03T01:17:58+02:00
trixie triage
- - - - -
2 changed files:
- data/CVE/list
- data/dsa-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -1381,8 +1381,9 @@ CVE-2026-103489 (In JetBrains YouTrack before
2026.2.19422 hTML injection in VCS
CVE-2026-103488 (In JetBrains YouTrack before 2026.2.19422 missing
authorisation allowe ...)
NOT-FOR-US: JetBrains
CVE-2026-103431 (colmux in collectl before 4.3.20.2 does not sanitize
ANSI/VT100 termin ...)
- - collectl <unfixed> (bug #1149711)
+ - collectl <unfixed> (bug #1149711; unimportant)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2543974
+ NOTE: Not considered a security issue, needs to be correctly handled in
the terminal emulators
CVE-2026-103353 (Incorrect Behavior Order vulnerability in WP ManageNinja LLC
FluentFor ...)
NOT-FOR-US: WordPress plugin or theme
CVE-2026-103347 (Unauthenticated Bypass Vulnerability in hCaptcha for WP <=
5.3.0 versi ...)
=====================================
data/dsa-needed.txt
=====================================
@@ -48,7 +48,7 @@ firebird3.0
--
firebird4.0
--
-freerdp3
+freerdp3 (jmm)
Maintainer proposed a rebase to 3.31, cf.
[email protected]
Needs a followup for remina and gnome-remote-desktop via trixie-pu as well
--
@@ -150,7 +150,7 @@ ruby3.3
ruby-jwt
Abhijith PA proposing a debdiff for review in [email protected]
--
-ruby-rack-session
+ruby-rack-session (jmm)
Simon Quigley prepared an update for review,
[email protected]
--
runc
@@ -188,7 +188,7 @@ vips
weechat
Upstream recommends to use branch from
https://github.com/weechat/weechat/commits/4.6/, cf #1142597
--
-wireshark
+wireshark (jmm)
Matheus Polkorny is working on an update to 4.4.19
--
xz-utils
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a5607cd1e666f53c450d27c2e0134360e35f6ac
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a5607cd1e666f53c450d27c2e0134360e35f6ac
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits