[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-18321
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Aug 3 21:11:08 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
11e38771 by Salvatore Bonaccorso at 2026-08-03T22:10:40+02:00
Update status for CVE-2026-18321
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1317,7 +1317,7 @@ CVE-2026-18358 (A flaw was found in gnome-remote-desktop as shipped in Red Hat E
CVE-2026-18321 (Buffer overflow in NTPsec's Zyfer refclock allows local attacker to cr ...)
- ntpsec <unfixed>
NOTE: https://gitlab.com/NTPsec/ntpsec/-/work_items/890
- TODO: check details, upstream work item not public at 2026-07-31
+ NOTE: Fixed by: https://gitlab.com/NTPsec/ntpsec/-/commit/28255fe0fac1cc562ddcbe17da9460dba180a40e (NTPsec_1_2_5)
CVE-2026-18218 (A flaw was found in the TokenManager component of the Keycloak identit ...)
- keycloak <itp> (bug #1088287)
CVE-2026-18217 (A flaw was found in the SAML protocol implementation of Keycloak, an o ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11e3877185e980512a62e27da35f48ddc6558372
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11e3877185e980512a62e27da35f48ddc6558372
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260803/34daf1df/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list