[Git][security-tracker-team/security-tracker][master] Add apr-utils commit
Bastien Roucariès (@rouca)
rouca at debian.org
Fri Aug 7 18:33:56 BST 2026
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker
Commits:
46788f69 by Bastien Roucariès at 2026-08-07T19:33:47+02:00
Add apr-utils commit
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -877,12 +877,18 @@ CVE-2026-3430 (The Creative Mail WordPress plugin from 1.6.5 to 1.6.9 does not s
CVE-2026-34502 (Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Ut ...)
- apr-util 1.6.4-1 (bug #1143837)
NOTE: https://lists.apache.org/thread/spk5643m4vq0mb8h5b9hz9gkp57ombl8
+ NOTE: Fixed by https://github.com/apache/apr-util/commit/e0221ffd4df4e08ebedff98222df9b79483f113d
CVE-2026-34501 (Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Ut ...)
- apr-util 1.6.4-1 (bug #1143837)
NOTE: https://lists.apache.org/thread/o8h6c7cq86fplxlnry6c3rn9x0ovq8mv
+ NOTE: Fixed by: https://github.com/apache/apr-util/commit/581d07aa9626fc3e22c3bbd03fb0020fe8eb5a08
CVE-2026-34191 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
- apr-util 1.6.4-1 (bug #1143837)
NOTE: https://lists.apache.org/thread/8xch90zogywwpo5wnsf4o088mkxy4qtf
+ NOTE: Fixed by: [1/4] https://github.com/apache/apr-util/commit/1aed1e343014fced408559f743ccabeafa2ed45e
+ NOTE: Fixed by: [2/4] https://github.com/apache/apr-util/commit/159d938a086bb7e4cd8d4a9e740742548ffebc85
+ NOTE: Fixed by: [3/4] https://github.com/apache/apr-util/commit/4f5600610f81d37e76f1b4f8c63ed8703482ab79
+ NOTE: Fixed by: [4/4] https://github.com/apache/apr-util/commit/4877d02526af7206001811ed28fe051790c5d0b5
CVE-2026-32548 (Unauthenticated Broken Access Control in SureCart <= 4.6.2 versions.)
NOT-FOR-US: WordPress plugin or theme
CVE-2026-32469 (Unauthenticated Bypass Vulnerability in CAPTCHA 4WP <= 7.6.0 versions.)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46788f693bcfeff400dddfc3afd2268bb4459199
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46788f693bcfeff400dddfc3afd2268bb4459199
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260807/5ddca699/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list