[Git][security-tracker-team/security-tracker][master] CVE-2026-18321/LTS
Bastien Roucariès (@rouca)
rouca at debian.org
Tue Aug 4 23:41:09 BST 2026
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker
Commits:
36cb527b by Bastien Roucariès at 2026-08-05T00:40:46+02:00
CVE-2026-18321/LTS
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1962,6 +1962,8 @@ CVE-2026-18358 (A flaw was found in gnome-remote-desktop as shipped in Red Hat E
TODO: does not affect an upstream version, but need to check if still only Red Hat specific, check details RH bug
CVE-2026-18321 (Buffer overflow in NTPsec's Zyfer refclock allows local attacker to cr ...)
- ntpsec <unfixed>
+ [bookworm] - ntpsec <postponed> (minor issue; DoS)
+ [bullseye] - ntpsec <postponed> (minor issue; DoS)
NOTE: https://gitlab.com/NTPsec/ntpsec/-/work_items/890
NOTE: Fixed by: https://gitlab.com/NTPsec/ntpsec/-/commit/28255fe0fac1cc562ddcbe17da9460dba180a40e (NTPsec_1_2_5)
CVE-2026-18218 (A flaw was found in the TokenManager component of the Keycloak identit ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36cb527b3a7fb6ce3a9036d8141c02fd4439a108
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36cb527b3a7fb6ce3a9036d8141c02fd4439a108
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260804/9263c351/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list