[Git][security-tracker-team/security-tracker][master] auto-nfu: Extend Perforce rule

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Apr 24 23:56:16 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fc3f4cc2 by Moritz Muehlenhoff at 2026-04-25T00:55:55+02:00
auto-nfu: Extend Perforce rule

- - - - -


2 changed files:

- data/CVE/list
- data/packages/nfu.yaml


Changes:

=====================================
data/CVE/list
=====================================
@@ -21,7 +21,7 @@ CVE-2026-6911 (Missing JWT signature verification in AWS Ops Wheel allows unauth
 CVE-2026-6272 (A client holding only a read JWT scope can still register itself as a  ...)
 	NOT-FOR-US: Eclipse
 CVE-2026-6043 (P4 Server versions prior to 2026.1 are configured with insecure defaul ...)
-	TODO: check
+	NOT-FOR-US: Perforce
 CVE-2026-4313 (AdaptiveGRC is vulnerable to Stored XSS via text type fields across th ...)
 	NOT-FOR-US: AdaptiveGRC
 CVE-2026-4078 (The ITERAS plugin for WordPress is vulnerable to Stored Cross-Site Scr ...)


=====================================
data/packages/nfu.yaml
=====================================
@@ -682,6 +682,7 @@
     - cna: Perforce
     - anyOf:
       - product: Delphix
+      - product: Helix Core Server (P4D)
 - reason: Samsung
   allOf:
     - cna: samsung.tv_appliance



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc3f4cc20b80b8fc531888965d4d6aca70b6dcf7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc3f4cc20b80b8fc531888965d4d6aca70b6dcf7
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260424/c138a059/attachment.htm>


More information about the debian-security-tracker-commits mailing list