[Git][security-tracker-team/security-tracker][master] Add CVE-2026-34155/rauc

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Apr 1 17:25:56 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0c53f3f7 by Salvatore Bonaccorso at 2026-04-01T18:25:33+02:00
Add CVE-2026-34155/rauc

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -418,7 +418,9 @@ CVE-2026-34162 (FastGPT is an AI Agent building platform. Prior to version 4.14.
 CVE-2026-34156 (NocoBase is an AI-powered no-code/low-code platform for building busin ...)
 	TODO: check
 CVE-2026-34155 (RAUC controls the update process on embedded Linux systems. Prior to v ...)
-	TODO: check
+	- rauc 1.15.2-1
+	NOTE: https://github.com/rauc/rauc/security/advisories/GHSA-6hj7-q844-m2hx
+	NOTE: Fixed by: https://github.com/rauc/rauc/commit/4fb7c798d6ae412344fb8f8d310d773046af3441 (v1.15.2)
 CVE-2026-33762 (go-git is an extensible git implementation library written in pure Go. ...)
 	TODO: check
 CVE-2026-33581 (OpenClaw before 2026.3.24 contains a sandbox bypass vulnerability in t ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0c53f3f74dbaaf26af72e5dc93739a95e1d9e58b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0c53f3f74dbaaf26af72e5dc93739a95e1d9e58b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260401/158aec6e/attachment.htm>


More information about the debian-security-tracker-commits mailing list